Hello,
I have a FortiGate 60F in transparent mode, behind a MikroTik router. I use port3 as external - connected to the mikrotik router and port4 as internal, which is connected to a mikrotik switch.
I followed the official documentation to set the FortiGate in transparent mode, and after that, because I have 12 VLANs set on my MikroTik router, I followed this technical note to setup the VLANs and forwarding domains.
I configured the forwarding domains, because without that, as soon I plugged the fortigate into the network, it created a loop.
Now with this configuration everything seems to be working fine, but when I try to run a ping from the fortigate, or from the MikroTik to the fortigate's management IP, I get DUP! packets:
Yes, it is part of the 12 vlans.
Hi,
To address the issue of duplicate packets when pinging the FortiGate's management IP from the Mikrotik router, ensure that the VLAN configurations and forwarding domains are correctly set up on both devices. Verify that there are no misconfigurations causing packet duplication, such as overlapping VLAN IDs or incorrect forwarding domain assignments. Double-check the network paths and configurations to eliminate any potential loops or misrouting that could lead to duplicate packets during communication between the FortiGate and the Mikrotik devices.
Hello,
There are no overlapping VLAN IDs on the mikrotik, on the fortigate each VLAN has the same ID on the external and internal interfaces, but that's how it was written in the technical note i posted in the first post.
Hi,
The DUP packets indicate that the ping command has received replies from the same IP address but with different MAC addresses.
Further it better to take 6 0 l packet capture to verify the reply MAC address there.
For your ref:-
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1737 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.