FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Anonymous
Not applicable
Article Id 197085

Description

 
This article describes the configuration of FortiGate Session Life Support Protocol (FGSP).
 
Scope
 
FortiGate.
 
Solution
 
FortiGate Session Life Support Protocol (FGSP) was introduced in FortiOS v5.0. However, in previous versions of FortiOS, this feature was known as 'standalone session sync' and only supported TCP sessions, did not support asymmetric traffic, and had other deployment limitations.
 
FGSP was designed to overcome these limitations. It supports asymmetric traffic, TCP, UDP, and ICMP sessions as well as NAT sessions. FGSP also supports configuration synchronization between FortiGates. The use of traffic load-balancers to share load across two FortiGates is possible with FGSP.
FGSP is well suited for networks using equal cost load balancing of links between routers. Also called equal-cost multi-path (ECMP) routing or multipath routing.

Contents:

Introduction.
FGSP Deployment scenario.
Deployment considerations.
Requirements.
Configuration Procedure.
Understanding Session Synchronization Details.
Firewalling of Asymmetric Traffic.
UTM flow-based inspection and Asymmetric Traffic.
FGSP vs FGCP Active-Active.
Contributors