Skip to main content
Mudassar216
New Member
April 16, 2021
Question

Placement of aggregate interface when using vdoms.

  • April 16, 2021
  • 1 reply
  • 6655 views
I was using fortigate without vdoms. Now I have enabled vdoms and my configuration has moved to root vdom. I’m using aggregate interfaces for connectivity from which I have created vlan interfaces. My question is that can I have the main aggregate interface in root vdom and it’s vlan interfaces in other vdoms?

1 reply

emnoc
New Member
April 16, 2021

yes that is doable and what most people do.

 

Ken Felix

Mudassar216
New Member
April 16, 2021
Thanks for the reply. I was thinking that it would be something Palo Alto have that main interface cannot reside in any vsys and vlan interfaces can be part of any vsys.
Yurisk
SuperUser
SuperUser
April 18, 2021

This is the only way MSSPs can divide traffic to different client VDOMs - different VLAN for each client/VDOM passing over the same physical Aggregate interface.