Does anyone know if it is possible to forward packets between VLANs locally on a FortiSwitch when in FortiLink mode or does traffic passing between subnets always have to be punted up to the FortiGate and back again? Seems like it would be a pretty major win if Fortinet could implement local L3 forwarding on a FortiSwitch where the FortiGate policy does not require any deep inspection for UTM/NGFW features. Would fit somewhere between a regular L3 switch and an ISFW. Alternatively, punt the first few packets of a session to the FortiGate and then 'fastpath' to the switch silicon once all checks have been made.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.