Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
AEK
SuperUser
SuperUser

FortiNAC and managed FortiSwitch.. SNMP vs Syslog

Hi NAC admins

 

FortiNAC 7.6.3.

FortiOS 7.4.8 managing FortiSwitches 7.4.6.

 

According to "FortiNAC - FortiSwitch FortiLink Integration Guide" doc, both SNMP MAC Notification & Syslog methods are supported.

https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/bf034eae-75df-11ef-8355-fa163e...

 

From the pros and cons list on page 7 & 8, am I supposed to I understand that Syslog method is more recommended than SNMP MAC notif method?

Anyone tried both and can advise on the best one?

AEK
AEK
1 Solution
ebilcari
Staff
Staff

The recommended way in term of quick response and scalability is to use L2 MAC traps. This will require direct communication (routing), no NAT between FSW and FNAC.

Syslog was previously recommend when compared to SNMP link status traps which didn't contain MAC information and require a full L2 poll of the FGT each time a port status changed.

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.

View solution in original post

2 REPLIES 2
ebilcari
Staff
Staff

The recommended way in term of quick response and scalability is to use L2 MAC traps. This will require direct communication (routing), no NAT between FSW and FNAC.

Syslog was previously recommend when compared to SNMP link status traps which didn't contain MAC information and require a full L2 poll of the FGT each time a port status changed.

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.
AEK

Its more clear now.

Thanks Emirjon!

AEK
AEK
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors