Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Sri_
New Contributor

Enabling Multi-VDOM on FortiGate 100E

I have a Fortinet FortiGate 100E (V7.2.10) running in a production environment.
Currently, multi-VDOM mode is NOT enabled.

I want to create a new VDOM.
Can someone confirm whether enabling multi-VDOM mode and creating a new VDOM will impact the existing production traffic or policies?

What precautions or best practices should I follow before enabling multi-VDOM on a live firewall?

2 Solutions
funkylicious
SuperUser
SuperUser

hi,

if i recall correctly, enabling multi vdom will move all the existing interfaces and rules/objects to root VDOM and should not have a impact on the traffic.

you should create/download a backup config file just in case you need to revert back or you lose some configuration.

"jack of all trades, master of none"

View solution in original post

"jack of all trades, master of none"
Toshi_Esumi

Yes. When multi-vdom is NOT set, everything you see and configure are in root vdom but the vdom name is hidden. So, when you enable multi-vdom, you see everything, except for those global stuff like interfaces, system admin, system DNS, SMTP, etc., in root vdom. But no change for its operation. It should keep working as it was before.

Toshi

View solution in original post

2 REPLIES 2
funkylicious
SuperUser
SuperUser

hi,

if i recall correctly, enabling multi vdom will move all the existing interfaces and rules/objects to root VDOM and should not have a impact on the traffic.

you should create/download a backup config file just in case you need to revert back or you lose some configuration.

"jack of all trades, master of none"
"jack of all trades, master of none"
Toshi_Esumi

Yes. When multi-vdom is NOT set, everything you see and configure are in root vdom but the vdom name is hidden. So, when you enable multi-vdom, you see everything, except for those global stuff like interfaces, system admin, system DNS, SMTP, etc., in root vdom. But no change for its operation. It should keep working as it was before.

Toshi

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors