- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
VLAN creation on Fortigate
hi,
I am a beginner in the world of Fortigate, I have a Fortigate 100D and unmanaged switches (switch L2 only), is this Fortigate can be a VLANs server, ie create and manage the VLANs without the need for an L3 switch? I tried to create VLANs nd enable DHCP to distribute IP addresses to workstations, but none of my clients receive the IP address?
best regard,
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Although the switch may not be managed, is it VLAN aware? If you pass VLAN traffic, does it get forwarded without getting clobbered?
Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
VLAN is not L3 but L2.
And yes, your switches need to be able to handle VLAN traffic. On the FGT, you are able to create tagged VLAN ports.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
thank you for your reply
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
As I said, if your switches are not VLAN-aware (they need not be managable for this) they won't pass VLAN traffic. On the FGT, you can create (I think that's what you mean) VLAN ports, even several different ones on one physical port (i.e., a VLAN trunk).
VLANs are not primarily a security feature. Rather, they create isolated broadcast domains to contain broadcast traffic and thus conserve bandwidth.
You will need a routing instance on your LAN if you want to communicate between VLANs. And yes, a FGT can do that for you.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Perfect, that's what I want, thanks
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
hi,
thank you for your response
It's a scenario I'm going to do in the next few days, and it's not done yet. I plan to cite 2 VLANs, one for server and another for workstations, it's security issue. Since I do not have a manageable switch to create VLANs, my question is: Is what I can create in the Fortigate?
best regards,
