Hi all
i just bought a 92D to replace my 60D
I converted config file to match new hardware and connected it to Juniper switch but nothing worked
I searched what could be wrong on fortigate but all seems to be OK
On switch side, i saw that when internal1 was connected ( only this port connected to the switch ), MAC address was correctly learnt on the switch port but when internal2 was connected, MAC of internal1 disappeard from the switch and i could only see the MAC of internal2
At this instant, my 60D is working perfectly on this switch so i think that the problem does not come from the switch
are you aware about this kind of problem ?
Is there any parameter to set up ?
Thanks in advance
NSE6
Solved! Go to Solution.
What's the cfg like for the access port and are you sure your not mistaking STP blocking or BPDU filters on the juniper? And what's your topology and reason for connecting the 2 internals? And are you running these 2 ports in the same STP domain ? And do you have STP enable on the fortigate?
You can check via the EX cmds for port blocked by STP;
show spanning-tree interface terse
show ether-switch table
PCNSE
NSE
StrongSwan
Hello
Sorry for delay, i was not able to perform tests
I can see now that the MAC of the cisco switch is learned by the juniper switch via Fortigate interfaces ...
I will try to find out what can be the command to solve this
BR
NSE6
So do you have the FGT92D connected directly to the EX or thru a cisco switch?
PCNSE
NSE
StrongSwan
Cisco switch is connected to wan1 and all other interfaces to EXswitch
Cisco and EX are connected but MAC address of the cisco switch is learnt via FGT ...
NSE6
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1747 | |
1114 | |
761 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.