FortiSwitch
FortiSwitch: secure, simple and scalable Ethernet solutions
zendodg
Staff
Staff
Article Id 331382
Description This article describes why is important not to modify https port on FortiSwitch once is managed by a FortiGate.
Scope FortiSwitch, FortiGate.
Solution

When possessing FortiSwitches managed by a FortiGate, it is possible to validate config sync and mac sync with the following command:

 

exec switch-controller get-sync-status all

 

Config sync and Mac sync are made from FortiSwitch through https, and the connection is made from FortiGate to FortiSwitch with https port (443).

 

In this case, modify the https port on FortiSwitch 124F.

 

httpsport.PNG

 

The FortiSwitch 124F stopped synchronizing MAC and config.

 

configsync.PNG

 

 The only way to get it back to normal is to configure https port back to the default.

 

 httpsport443.PNG

 

Once modifying it back to the default port, the switch will be synchronized again.

 

configsyncokay.PNG