Hello everyone, I am trying to figure out if it is possible to use mclag and fortilink to connect the following devices together and how to do it. I have thought of two possible scenarios, but I am not sure if either of them is possible, so I am asking for your opinion. In the first case, I am afraid that I do not have enough ports 10gbit ports to create all link connection, while in the second case, I am afraid that it is not really feasible because I would basically want to have two independent tier1.
I don't need guidance with the configuration, I just need help understanding which scenario might be the best one.
The system will consist of the following devices, each with four 10Gb ports, which I would like to implement (using fiber SFPs to connect everything).
1x Fortigate FG-120G
2x Fortiswitch FS-448E-POE
2x Fortiswitch FS-424E-POE
First
Here I don't have the fifth 10Gb port in the 448s to be able to go from the first 448 to the second 424 and from the second 448 to the first 424, even though I'm missing redundancy. “On paper it works,” but is it deployable?
Second
Here I would like to create two independent “tier1” as “first level”, but again I don't know if this is deployable.
Thank you for advice
Solved! Go to Solution.
Hi Dr
Both are technically possible, the first one (2 tiers) needs one FortiLink interface and the second needs two FortiLink interfaces.
However the first one is the the most common one and you are certain you will not have headaches with your segmentation.
Hi Dr
Both are technically possible, the first one (2 tiers) needs one FortiLink interface and the second needs two FortiLink interfaces.
However the first one is the the most common one and you are certain you will not have headaches with your segmentation.
Thank you so much, everything is clear to me and in the end I did as you suggested.
Bye!
User | Count |
---|---|
2551 | |
1356 | |
795 | |
646 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.