Hi
I have pair of FGT connected to two core switches using fortilink with multiple access switches hanging out of the core switches. We have multiple VLANs configured on the fabric which work through FW. However there is a requirement to create 2 VLANs for which intervlan traffic should work through fortiswitces - basically want to bypass FGT for 2 specific VLANs.
We want to use FGT for intervlan routing between VLAN 10 and VLAN20.
However want to bypass FGT for VLAN 40 and VLAN50 and want to do intervlan routing using Core Switches.
Any idea how this can be achieved ?
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
This cannot be achieved if the Core Switches are managed using FortiLink. You will need a standalone L3 FortiSwitch.
Thanks Graham
Just checking this document, is it only for fortiswitches where switches are not managed by FGT ?
Configuring layer-3 routing on FortiSwitch units | FortiSwitch Manager 7.2.0 (fortinet.com)
That is documentation for the standalone FortiSwitch Manager software (it mimics a FortiGate in how it manages the FortiSwitches). Seems like as of 7.2 it can allow L3 routing on the FortiSwitch.
Perhaps that functionality is coming to FortiGate-managed FortiSwitches but AFAIK it is not possible today.
Hi there,
From my understand, you want to make VLAN40 <<>>> VLAN50 can reach each other within the switch without passing through gateway(fortigate).
Any layer3 communication require gateway.
I would suggest to create a support ticket so we can verify if this feature already introduced and ready to be implemented.
Hi haiqal
Yes that's correct.
VLAN40 <<>>> VLAN50 -- intervlan routing within switch - no FGT involvement.
Everything else via FGT.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1641 | |
1069 | |
751 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.