FortiSwitch
FortiSwitch: secure, simple and scalable Ethernet solutions
sachitdas_FTNT
Article Id 368909

 

Description This article describes the process of FortiSwitch Auto-Discovery and Authorization on FortiGate.
Scope FortiGate, Managed FortiSwitches.
Solution
  1. FortiSwitch sends FortiLink discovery frames.
  2. FortiGate adds FortiSwitch configuration to FortiOS (FortiSwitch status is Unauthorized).

 

1.png

 

  1. The administrator authorizes the switch on the FortiGate GUI (FortiSwitch status changes to Offline).

     

  2. FortiGate sends a FortiLink frame to the switch to notify the authorization.

     

  3. FortiSwitch saves the standalone configuration and changes it to the default FortiLink configuration.
                                             

    2.png

     

     

  4. FortiSwitch changes to FortiLink mode and:

    1. Creates a FortiLink trunk using auto-ISL.

    2. Starts exchanging FortiLink heartbeats with FortiGate (health check).

       

  5. FortiSwitch obtains network parameters through DHCP.

     

  6. FortiGate adds an A record to its DNS database for the switch.

     

    3.png

     

     

  7. FortiSwitch uses NTP to sync its time with FortiGate.

     

  8. FortiSwitch brings up the CAPWAP tunnel (FortiSwitch status changes to Online).

     

  9. FortiGate pushes the configuration to FortiSwitch using FortiSwitch REST API (HTTPS).

     

 

4.png

 

Related documents:

Technical Tip: Management Protocols for FortiSwitch discovery on FortiGate

Technical Tip: FortiLinkd process on FortiSwitch

Technical Tip: Managed FortiSwitch Capwap discovery process

Technical Tip: Managed FortiSwitch default configuration of inter switch link fortilink trunk, mclag...

FortiSwitch management