Hi Everyone,
We have a FortiSwitch 448E connected to a Fortigate 90G via FortiSwitch. Since the operation manual says ACL (Access Control List) can't be accessed when FortiLink is in use, is the only way to access this via the Management port?
Any assistance is greatly appreciated.
Thank you very much,
Sonny
Hi @SonnyB ,
On FortiOS 7.4/7.6 the workflow for FortiSwitch ACLs is CLI-only via config switch-controller acl …; there is no GUI panel to create those rules, and you don’t need an extra feature-visibility toggle beyond the standard Switch Controller.
Reference CLI syntax: config switch-controller acl ingress / group in the FortiLink Guide 7.4/7.6:
https://docs.fortinet.com/document/fortigate/7.4.0/new-features/921380/support-user-configurable-acl
https://docs.fortinet.com/document/fortiswitch/7.6.1/fortilink-guide/921380/configuring-an-acl
The ACL engine introduced in FortiOS 7.4—“user-configurable ACL” in the release notes—is CLI-only; the docs show no GUI workflow. No MGMT-port break-out required: the commands on the documents are entered on the FortiGate; it pushes the ACL down to the 448E through FortiLink, so the switch never has to leave managed mode.
BR.
If my answer provided a solution for you, please mark the reply as solved it so that others can get it easily while searching for similar scenarios.
CCIE #68781
User | Count |
---|---|
2546 | |
1354 | |
795 | |
643 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.