FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
ychia
Staff
Staff
Article Id 339442
Description

This article describes that when FortiGate running in HA mode, the Current_HWaddr is modified to become the HA virtual MAC address. Permanent_HWaddr is a MAC address that is not changeable and remains the same in standalone or HA mode.

Notice that Current_HWaddr and Permanent_HWaddr are the same although FortiGate is in HA mode.

Scope FortiGate.
Solution
  • On the Primary unit, the Current_HWaddr is modified to become the HA virtual MAC address.
  • On the Secondary unit, the Current_HWaddr is not modified as designed.

 

To display the Current_HWaddr, run the following CLI command:


diagnose hardware deviceinfo nic <interface_name>

 

Sample of a selected interface:

 

  • Primary unit:
    Current_HWaddr e0:23:ff:fe:f4:00
    Permanent_HWaddr 04:d5:90:d5:48:4c

 

  • Secondary unit:
    Current_HWaddr 04:d5:90:d5:41:0c
    Permanent_HWaddr 04:d5:90:d5:41:0c
Contributors