Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Not applicable

Transparent mode with VDOM and VLANs

Hello, I am experiencing issues with a Fortinet in transparent mode. I have the following configuration : Firewall Nokia ---- VLAN 1 ---- Fortinet Transparent mode --- VLAN 2 --- ...... The Fortinet has a port1 connected to VLAN1 of the switch, and port2 connected to the VLAN2 of the switch. It is running in transparent mode between the firewall Nokia and the internal LAN. The switches are Nortel, and run 100% CPU when I plug port2 of the Fortinet to VLAN 2. I think the switch sees the same address on serveral VLAN a screws up. I have trying to add the parameter forward-domain without success : port1 forward-domain 1 port2 forward-domain 2 That prevents the switch from running 100% of CPU but then I cannot add any Firewalling rules in the Fortinet. Does someone knows exactly how to do ? Thanks,
10 REPLIES 10
bergonz
New Contributor

If you have the problem with the FG but not with a crossover, then your problem is definitely not a single forwarding database issue. You should work on the switch to see why it is going 100% CPU. Are you sure that you enabled HA active-passive on the FG' s and that one of them is going passive? If you simply put them in parallel, they wil loop your network. Try with just one FG. As a workaround, you can leave the crossover in place, leave the FG' s switched on and with cables plugged in, and mess up the cables so that the casual manager will not notice that they are not connected. Semicolon dash closed round parenthesis, Bergonz
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors