Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
theShmike
New Contributor

Deployment of FortiSwitch ACLs through Fortimanager?

Hi there!

 

Is it possible to deploy ACLs with Ethertype as classifier through Fortimanager to connected FortiSwitches?

 

I am no so much into Fortinet and was called for troubleshooting network issues at a customer site last week. The customer is using the complete Fortinet-Stack and it turned out, that the customer had a problem with massive "IPv6 Listener Reports" broadcasts. It seems that all computers are starting to flood the network when entering standby mode. We told them to fix network card drivers in the long run.

As a quick win, we've implemented an ingress policy that drops IPv6 packets on the FortiSwitches, since the customer does not use IPv6.

 

Since the customer has multiple sites with the same problem, my question is: Is it possible to deploy an ACL through FortiManager to all switches in the Org? As mentioned, I am not so much into Fortinet, but I could see, that the switches are managed in FortiLink-mode and I also have access to FortiManager. But I could not find any place to create an ACL and push it out to all switches. At least there was a possibility to do it, but I could not make use of Ethertype classifier there.

If not, is there a possibility to run a configuration script on multiple switches? I was able to SSH to all switches one by one from Fortimanager, but could not find a place to run a script on multiple switches.

 

Would be very thankful for any thoughts on this :)

2 REPLIES 2
Stephen_G
Moderator
Moderator

Hello theShmike,


Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.


Thanks,

Stephen - Fortinet Community Team
Stephen_G
Moderator
Moderator

Hello theShmike,

 

We are still looking for someone to help you.

We will come back to you ASAP.


Regards,

Stephen - Fortinet Community Team
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors