I have created an MCLAG between the two switches using the graphical interface. Each switch is connected with one port to a cluster of 100F firewalls in active-passive mode. For now, I’ve only connected a single physical cable because I don’t fully understand the situation yet, so I’m keeping things as simple as possible.
I don’t understand why all the links always appear in a disconnected state.
Additionally, I would like to use multiple LAGs, both between the switches and also between the firewalls and the switches, but I’m not sure what the correct configuration should be.
My firewall is running firmware v7.6.3 build3510 (Feature), and the switches are on S248EF-v7.6.2-build1085,250526 (GA).
Hi Matteo,
can you please also provide the Fortilink configurations on the Fortigate? When MAC-LAG is enable you should disable split-interface on the Fortilink. For the full topology I would suggest the following one (including LAGs).
User | Count |
---|---|
2534 | |
1351 | |
795 | |
641 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.