Hi,
When in FGCP A-P, the virtual-switch mac-address is following the virtual MAC Address of the HA.
What are attributes that can we change to make the virtual-switch mac-address different between cluster?
We are running FortiGate A-P and using virtual-switch in multiple site, but we are facing issue where the virtual-switch mac-address is conflict between site.
Thanks
Solved! Go to Solution.
Hi @arie12092 ,
You can change the cluster ID. Please find more information at: https://community.fortinet.com/t5/FortiGate/Technical-Tip-HA-Cluster-virtual-MAC-addresses/ta-p/1942...
Hi @arie12092 ,
You can change the cluster ID. Please find more information at: https://community.fortinet.com/t5/FortiGate/Technical-Tip-HA-Cluster-virtual-MAC-addresses/ta-p/1942...
Hi @aionescu ,
The group ID in config system HA is only 0-255.
If we have more than 255 sites, then what should we do? While we don't use VDOM in the FortiGate.
Thanks
Hi, do you have a design that has 255 clusters in the same broadcast domain?
As per Fortinet best practices: each heartbeat interface should be isolated in its own VLAN.
Please find more information at: https://docs.fortinet.com/document/fortigate/6.4.0/best-practices/493254/heartbeat-interfaces
Hope it helps.
Hi,
We need to deploy FortiGate in branch office where the FGT is in FGCP A-P and the branches are using Metro-E from same provider. So, for each branch, the FortiGate need to be different mac address so that it's not conflict with each other.
Do you have any suggestion for that case?
Thanks
Hi, from the cluster side, there is no other suggestion that I can think of.
User | Count |
---|---|
2025 | |
1159 | |
770 | |
448 | |
313 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.