Hello, i want to integrate a HA Fortigate to a standalone.
I have one switch with 4 LACP ports connected to the Fortigate (port11 to port14) (in switch group lag.0.3)
I have to create another 4 ports in the same group (lag.0.3) on the switch and connect to the Slave FGT (port11 to port14)? to have the HA active?
Regards
Yes, for Fortigate HA one of the requirement is to have same physical connectivity. So if you have a 4 port LACP on one node, the other node also should have same LACP config. You need a separate LACP/group on switch.
For example the LACP group to Node0 can be lag1 and LACP to Node1 need to be lag2.
This is to avoid sending traffic to backup node as part of LACP load balancing.
Edit
Below article will be useful.
User | Count |
---|---|
2403 | |
1296 | |
778 | |
542 | |
454 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.