LAG can be configured with switch interface.Can this later on be converted to NAT mode?
Suppose I have done lag of 4 ports as in-bound and 4 ports as out-bound.
Then they will act as 2 ports. 1 for in-bound and 1 for out-bound. After that can I convert whole firewall into NAT mode.
A diagram would help but your question doesn't make any sense. A LAG is a layer2 function. If your asking can you apply a layer3 address over a LAG and in routed-mode than yes.
If your talking about converting from transparent mode to routenat mode , than any policies and vdoms would have to probably be deleted. So the short answer is no.
PCNSE
NSE
StrongSwan
Still don't understand are you using a hardware switch a fortiswitch or what? What do you mean by switch-mode?
PCNSE
NSE
StrongSwan
forti-gate in transparent mode works as a switch only additional features are security features if i am not wrong.
my concern is related to 3700D fortigate firewall
Hi here is the answer to my question i came to know by fortinet document.
I had asked I want to make LAG.
And as per my old knowledge LAG can be made on fortigate with switch mode.
So CAN I first make LAG in switch mode (as a default mode). then can I change the mode from switch mode to NAT mode.? AS I require LAG in NAT mode.
Answer is :-For making LAG fortinet should be in NAT mode. So it is clear from here. I have no need to make lag in switch mode if i require it in NAT mode convert fortigate in NAT mode and make lag there
. ======I have made in NAT/route mode. And it is working fine.=============
I require LAG in NAT mode . I made it and it doesn't matter LAG works on l2, or L3.
please tell me if i am wrong.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1747 | |
1114 | |
764 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.