Hi,
The Fortigate 50G-SFP documentation does not specify whether the SFP port can function as a secondary WAN. Does anyone have information about this?
Thanks!
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Created on 10-02-2024 10:50 AM Edited on 10-02-2024 10:51 AM
The only real difference between interfaces, apart from the label, is how the ports are hooked up to the NPU.
For example, on larger units the HA or MGMT ports are not NPU accelerated. You probably shouldn't use these for heavy traffic, but you can do it if you want.
Generally, all SFP and general ports are always NPU accelerated.
You can refer to the fastpath document to confirm this for each model.
See this for the 50G: https://docs.fortinet.com/document/fortigate/7.0.12/hardware-acceleration/201529/fortigate-50g-and-5...
For this model, all ports are NPU accelerated and there will not be any difference when configuring one of those ports as a second WAN link.
You can use whatever port you want for the WAN, FortiOS does not place any restrictions for this.
Created on 10-02-2024 09:56 AM Edited on 10-02-2024 10:10 AM
Thanks for the response. I noticed that many Fortigate models, like the 50G-SFP-PoE model includes two WAN ports. What's the difference between this and, for example, a SFP port as a secondary WAN? Any limitations? Can be used in a SD-WAN?
Created on 10-02-2024 10:50 AM Edited on 10-02-2024 10:51 AM
The only real difference between interfaces, apart from the label, is how the ports are hooked up to the NPU.
For example, on larger units the HA or MGMT ports are not NPU accelerated. You probably shouldn't use these for heavy traffic, but you can do it if you want.
Generally, all SFP and general ports are always NPU accelerated.
You can refer to the fastpath document to confirm this for each model.
See this for the 50G: https://docs.fortinet.com/document/fortigate/7.0.12/hardware-acceleration/201529/fortigate-50g-and-5...
For this model, all ports are NPU accelerated and there will not be any difference when configuring one of those ports as a second WAN link.
Created on 10-02-2024 11:32 AM Edited on 10-02-2024 11:51 AM
I thought I needed the SFP because the Fortigate 50G only has one WAN port. It's good to know that I don’t need the SFP since I can just convert one of the LAN ports into a second WAN.
Given your previous explanation, why does Fortinet identify only the PoE version as dual WAN, when other models in the same 50G series can also be configured for dual WAN? In the screenshot I attached you can see they identify some models with one hardware accelerated WAN ports and other models with two. I think they do the same with the 30G and 40F. Any reason for this?
I had a look at the schematic for the 50G-SFP vs the 50G-SFP-POE, it looks like for the POE version the RJ45 WAN port is not in the same physical switch as the rest of the RJ45 ports. I think the only tangible difference to the end user would be that you cannot add all 4 RJ45 ports into a hardware switch, whereas the non-POE would be fine with you doing this.
That makes sense.
Thanks!...
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1662 | |
1077 | |
752 | |
443 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.