Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Gumo
New Contributor II

How to disable Lockdown ISL

I want to turn off Lockdown ISL on Fortigate firewall, but it automatically turns back on. How can I turn it off?

I found this in the Fortigate library, but I didn't have much success.
https://docs.fortinet.com/document/fortiswitch/7.2.6/fortilink-guide/173260/configuring-fortilink
11.png

4 REPLIES 4
msanjaypadma
Staff
Staff

Hi @Gumo ,

 

Can use the CLI command
#diagnose switch-controller switch-recommendations fabric-lockdown-disable

If you have found a solution, please like and mark it as solved to make it easily accessible for everyone.

 
Mayur Padma
Gumo
New Contributor II

I tried and got success, but it is still open, do I need to restart the firewall?lo.png

fricci_FTNT

Hi @Gumo ,

No need to restart the firewall after running that command.

 

Thank you,

 

 

---
If you have found a useful article or a solution, please like and accept it to make it easily accessible to others.
fricci_FTNT
Staff
Staff

Hi @Gumo ,

 

I can see that you have only one FortiSwitch connected. The Lockdown ISL option applies only to ISL or ICL links. If the FortiGate does not detect any ISL or ICL the command "diagnose switch-controller switch-recommendations fabric-lockdown-disable" returns successful but the option remains enabled. That is expected.
If you have more than one FortiSwitch and at least one ISL or ICL, then you should be able to disable that option (either from GUI or CLI).

Thank you,

---
If you have found a useful article or a solution, please like and accept it to make it easily accessible to others.
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors