48 hours into 6.2.1 and memory has not gone over 50% with a normal business day load on the network.
I'm in the process of deploying a similar configuration, except I went with a pair of 601E's in HA, a pair of 1048E's in distribution (mclag icl), and 31 448D FPOE switches. I'm interested in how you are deploying your access loops for your 44 switches. I presume those are broken among several IDF closets. Can you explain how you cabled them? I know Fortilink will automatically discover them, but what did you do with the cabling? Say you have a stack of five in a closet - with one 10G fibre on the top switch landing on one 1048, and one 10G fibre on the bottom switch terminating on the second 1048, and each of the five switches ISL'd to each other over 10G. Will both those home-runs back to the 1048's be active, or is one in standby mode? Will Fortilink just detected the connections and make the best choice for configuration? About the Fortilink - is it in split interface mode or is that disabled?
Last question - you went with a honking huge model of gate (1500D). Are you expecting a lot of growth? Will you be deploying FortiAP's too? And what about FortiClients?
I know, lots of questions and not really related to your post. Any input appreciated. Thanks.
That is correct. I have my top switch going to one of my 1048's and the bottom switch going to the other 1048. I am using DAC's to link the switches within each IDF. When I was originally configuring the MC-LAG between the 1048's, one of the steps was to disable Fortilink Split Interface, so I am assuming that both connections in the loops are active, although maybe one has a preference. I am running two 10GB connections between the 1048's for 20GB.
We tested our design's redundancy before we went into production. We simulated losing a 1500, then a 1048, the some of the 448's within the loops and everything worked as expected. The Gates are running Active/Passive.
I followed the guide at https://cookbook.fortinet.com/enterprise-secure-access/. I don't know if I missed an email or something but I have not been able to access cookbook.fortinet.com in the last few weeks.
Upgraded my lab on the weekend. 2x501, 2x1024, 2x248, many x321e. Upgrades were all successful and things looking good so far. Really liking the GUI enhancements. -edit- went straight from 6.0.6 not 6.2.0
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1751 | |
1114 | |
766 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.