Skip to main content
Loshka
New Member
July 21, 2025
Question

VLAN untugged port (access port)

  • July 21, 2025
  • 3 replies
  • 480 views

Hello.
I purchased a Fortigate201G; previously, I used Mikrotik. I am unable to configure VLAN. I am creating them according to the instructions. On Mikrotik, I created tugged and untugged ports. However, the end computer does not receive an IP address from the VLAN. DHCP is enabled. Could you advise me on what I am doing incorrectly?topology FW-Mik_PC.jpgFW.jpgFW2.jpgFW3.jpgFW4.jpg

3 replies

funkylicious
SuperUser
SuperUser
July 21, 2025

hi,

not a mikrotik expert, but in your diagram you are using port1 and port2 to connect to the fw and the pc, in access mode vlan101, yet in the screenshot i only see bridge1 and port1 as tagged, port2 is untagged.

is the NIC on the PC doing the tagging if not try adding also port2/ether2 to the tagged interfaces.

"jack of all trades, master of none"
Loshka
LoshkaAuthor
New Member
July 21, 2025

Port 2 is marked as an access port (untagged). The computer should have obtained an IP address automatically. I tested it. If you install Mikrotik instead of Fortigate, the computer will obtain an IP address via DHCP.

funkylicious
SuperUser
SuperUser
July 21, 2025

ok, starting to make a little more sense now 

if you set a static ip on the pc can you ping the ip on the FGT ? if so, i would disable DHCP and re-enable it and see if it works then, even try do a packet capture to ensure that DHCP requests come in and out goes replies.

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Diagnosing-DHCP-on-a-FortiGate/ta-p/192960 

"jack of all trades, master of none"
Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!