I have a Fortiwifi 50E and i want to switch to interface mode (i need to setup individual ports). I have searched on this forum and tried all the suggestions found but i always get:
command parse error before 'internal-switch-mode' Command fail. Return code -61
I reset to factory settings the device and deleted every reference to "Internal" interface (purged firewall policy, dhcp server...) but i get always the same error.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
What version of fortios are you running? I thought that command doesn't exist any more. Likelyhood is your 50E is already running interface mode but using "hard-switch" called "lan" under "config sys virtual-switch". Then you just need to remove the port you want to use separately from "lan" hard-switch.
Version is: v5.4.3,build1111 (GA)
Yes "lan" is physical-switch "sw0" and include all ports. I have removed lan1 from "lan" and now i see the phisical interface. Thank you so much.
just for the reference, in later versions ports can be included/excluded in the GUI in Network>Interfaces>Internal (in this case). Additionally, all ports belonging to a switch will be highlighted if you click just one in the diagram.
Or - vice versa - you can simply delete the switch in gui after you removed any reference from it before. And then you have what was called interface mode.
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
sw2090 wrote:How i can do that on gui?Or - vice versa - you can simply delete the switch in gui after you removed any reference from it before. And then you have what was called interface mode.
pierob wrote:
Usually from a factory reset, you log into the GUI and first remove the default firewall policy (there should be only one) then go into the interface for lan or internal switch and uncheck the DHCP option. Save the setting.
If you have the ref column enable on the Interface screen, there should be nothing showing up as a reference - otherwise click on that number showing and see what else you need to remove.
Things to keep in mind is you likely won't be able to remove all references if you are actually logged into one of the switch members - I would advised logging into one of the other ports (e.g. WAN1 orWAN2 ports) before trying any changes to the internal (lan) switch. Rereading your original post, I think this is where it is catching you up.
NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
yeah as Dave said: first remove all references (in factroy default that is one policy and the dhcp server option) and afterwards right click the switch in interface view and select delete.
If you are no longer on factory default click the number of references in the colun Dave mentioned to check on the references.
You should be able to delete the switch even if you are connected to that. You just afterward won't be able to reach the FGT since you would be connected to an unconfigured interface then ;)
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1662 | |
1077 | |
752 | |
443 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.