| Description | This article describes an issue that occurs when adding a new default route when a FortiSwitch is operating in FortiLink mode. |
| Scope | FortiSwitch. |
| Solution |
If a FortiSwitch is in FortiLink mode, a newly added default route will not be selected to forward traffic. This is the expected behaviour, considering the FortiLink design. In FortiLink mode, the switch-controller FortiGate is always the default gateway. Otherwise, the communication with the FortiGate would be severed, and the FortiSwitch would no longer be manageable. Therefore, additionally configured default static routes are added to the routing table but are not inserted in the FIB (Forwarding Information Base).
If a FortiSwitch unit operating in FortiLink mode has the 'internal' interface configured as the FortiLink interface, the following route will be added to the routing table and FIB:
...
...
The reason is the lower distance (5) when comparing with the 'mgmt' interface route (10). Adding a static route with a distance equal to 4 or lower would make it the FIB route; however, it would break the communication between the FortiSwitch and the FortiGates.
As a best practice, precise prefixes should be used when creating static routes in FortiSwitch units operating in FortiLink mode.
Optional FortiLink configuration |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.