Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
HS08
Contributor

Active Active HA

When we configure the fortigate as Active-Active this mean we will have :

  • 2 cable from both fortinet to the internet
  • 2 cable from both fortinet to the LAN
  • 1 cable for heartbeat.

Now i want to focus 2 cable from fortinet to the LAN. Should the LAN ip address on the fortigate side have different ip or same ip? If use same ip address, what should we configure on the core switch port? Should 2 ports on the core switch configured as L3 LACP, or should we configure as L3 but using VLAN?

 

8 REPLIES 8
ndumaj
Staff
Staff

Hi @HS08

On HA Active-Active scenario there should be different IP on LAN connection.

Please review the following guide and article:
https://docs.fortinet.com/document/fortigate/7.2.10/administration-guide/357558/ha-active-active-clu...
https://community.fortinet.com/t5/FortiADC/Technical-Tip-How-to-failover-traffic-group-to-the-other-...

BR

- Happy to help, hit like and accept the solution -
HS08

Hi @ndumaj 

I can't find any guide that we should use different i address on LAN for active active scenario. Can you help me by give the screenshot maybe?

HS08

Hi @sjoshi 

Already read the article, but still confuse related ip address configuration for active active scenario. Should each LAN interface from fortinet use same ip address or different ip address?

sjoshi

Both the FGT will have the same IP address for all interface

Let us know if this helps.
Salon Raj Joshi
HS08

How about the mac address, will be same or different?

sjoshi

you can refer above article and go through it once..

After that if you have still any query let me know

Let us know if this helps.
Salon Raj Joshi
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors