Hello,
We have a Nexus switch 5548 connected to FortiGate 100D via regular trunk port. All intervlan routing will be done on the Nexus switch and also has a transit vlan between Nexus and Fortigate that will carry other vlans for the internet access. Right now I can access the internet from Nexus from Transit vlan 254 but unable from other vlans. What am I missing? I've attached configs from both devices.
Thank you in advance!
Fortigate config: https://drive.google.com/file/d/1W_GrNUxOCHpK5YIoU3JtxavXwc9hginL/view?usp=sharing
Nexus config: https://drive.google.com/file/d/1wVegIRtnjyKz6cd_yw5SJcY-C3FFrzC1/view?usp=sharing
(sorry, couldn't figure out how to attach files directly here)
Hello @st3rling ,
- From one of the machine behind VLAN try to ping 8.8.8.8 and run the following debugs on FortiGate and update the thread:
di de reset
diagnose debug flow filter addr <source-ip> 8.8.8.8 and
diagnose debug flow filter proto 1
diagnose debug flow show function enable
diagnose debug console timestamp enable
diagnose debug flow show iprope enable
diagnose debug flow trace start 99
diagnose debug enable
User | Count |
---|---|
1926 | |
1144 | |
770 | |
447 | |
282 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.