FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
sgiannogloudis
Description This article describes the functions of port groups in high end platforms.
Scope FortiOS 6.4, 7.0 and 7.2 GA releases.
Solution

In top end FortiGates for example 2600F, 3400E, 3600E the majority of the physical interfaces are participating in port groups.

 

Port group can be easily noticed, over the physical interface itself under the GUI's Network --> Interfaces section:

 

sgiannogloudis_0-1659941819730.png

 

The above example is from an FortiGate-3600E and it easily possible to observe that port3 up to port6 belong to the same group.

 

A group consists of 4 ports and the settings like interface speed, media type and Forward Error Correction [FEC] need to be the same within the group.

 

When the user change one of these settings, FortiOS generates a warning messages and changes the setting in order to be identical in the other 3 port group members as well.

 

For example, speed settings was changed only in port33:

 

# config system interface

    edit port33
        set speed 25000full
    next
"port33-port36" speed and/or mediatype/FEC will be changed to 25000full due to hardware limit. 
Do you want to continue? (y/n)y

 

Then, all the other ports three ports in the same group were automatically configured with the same setting:

 

# show system interface

    edit "port34"
        set vdom "root"
        set type physical
        set speed 25000full
    next
        edit "port35"
             set vdom "root"
             set type physical
             set speed 25000full
         next
             edit "port36"
                 set vdom "root"
                 set type physical
                   set speed 25000full
             next