Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
jefazo92
Contributor

Can Cisco Discovery Protocol be disabled in a Fortigate?

I would like to disable CDP and have noticed it is referenced in certain CLI commands in the CLI reference. However, I have been unable to find how it might be disabled globally. Is there a command to achieve this?

12 REPLIES 12
AEK
SuperUser
SuperUser

I guess you mean LLDP.

I know it can be disabled per interface but there seem to be a way to disable it globally.

https://docs.fortinet.com/document/fortigate/7.6.0/administration-guide/311052/lldp-reception

Hope it helps.

AEK
AEK
jefazo92

@AEK I mean CDP. I already disabled LLDP.

Jakob-AHHG

So you disabled all FortiLink negotiation?
Well, if you don't need any other Fortinet equipment, that should be ok.. ;) 

Jakob Peterhänsel,
IT System Admin,
Arp-Hansen Hotrel Group A/S, Copenhagen, DK
Jakob Peterhänsel,IT System Admin,Arp-Hansen Hotrel Group A/S, Copenhagen, DK
AEK
SuperUser
SuperUser

I don't think FortiGate supports CDP.

I know FortiSwitch does.

AEK
AEK
Jakob-AHHG
Contributor II

I'm currious: Why?
In my 30 years of working with network equipment, CDP & LLDP is one of the most valuable features in troubleshooting many issues. Especially getting remote knowledge of what equipment is connected where to what ports.

Jakob Peterhänsel,
IT System Admin,
Arp-Hansen Hotrel Group A/S, Copenhagen, DK
Jakob Peterhänsel,IT System Admin,Arp-Hansen Hotrel Group A/S, Copenhagen, DK
AEK

I guess because CDP is proprietary and LLDP is standard.

AEK
AEK
Jakob-AHHG

He already disabled LLDP.. ;) 

Jakob Peterhänsel,
IT System Admin,
Arp-Hansen Hotrel Group A/S, Copenhagen, DK
Jakob Peterhänsel,IT System Admin,Arp-Hansen Hotrel Group A/S, Copenhagen, DK
abarushka
Staff
Staff

Hello,

 

CDP is not listed in the list of supported RFCs:

https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/e4a64990-3346-11ef-bfe5-fa163e...

 

Could you please elaborate which documentation you are referring to? 

FortiGate
jefazo92

Hi @abarushka the Fortigate CLI reference manual, CDP is referenced for the management-interface parameter for config switch-controller lldp-settings. The description for the parameter states, "Primary management interface to be advertised in LLDP and CDP PDUs".

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors