Hello,
We have cluster of two FGT200F on production, there is no Internet connection, no default route set.
In two months we have to refresh all license - current will expire.
Can we use one port (for example port 1) and connect to them some LTE router for a while ??
Action Plan:
1.Set port1 to (dhcp) get IP from LTE Router
2.Set default route pointing to LTE Router IP
3.Create a access rule to interent with NAT on Port1
Looks OK ??
Second question, does secondary FGT will automatically refresh lic , or we have to the same as above on secondary ??
Thanks
Hi Ted
1 and 2 are ok, but regarding 3 you don't need to create access rule to interent with NAT on Port1, since the traffic is local-out.
Once 1st FGT is done you will need to fail-over your cluster to the second node in order to refresh license.
Hi AEK,
Ok thank You, which command should I run to failover manually ??
Hi Ted
You can just reboot the active node from GUI menu or from CLI (exec reboot).
User | Count |
---|---|
2570 | |
1362 | |
796 | |
651 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.