Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
ahmadking22
New Contributor III

VLANS

Hello

I have FotrtiGate100F

I have 3 building in my company each building has connection to MY FortiGate 

Building A - connect to port 17   ( I create VLAN 10 for LAN and  VLAN 11 for AP )

Building B - connect to port 18   ( I create VLAN 12 for LAN and  VLAN 13 for AP)

Building C - connect to port 19    ( I create VLAN 14 for LAN and  VLAN 15 for AP)

I need All AP  in all Building to take IP Address from same range anyone can help me 

thanks for all

best regards.

king
king
1 Solution
ahmadking22
New Contributor III

 I have solved this problem

i putted more interface as switch after that i create VLAN for LAN ,AP and Server

king

View solution in original post

king
9 REPLIES 9
ozkanaltas
Valued Contributor III

Hello @ahmadking22 ,

 

You can do this with VDOMs. If you create separate VDOM for each building, you can use the same subnet for all buildings. 

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW
If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
ebilcari
Staff
Staff

If I get it right, you want to use a single subnet/VLAN for all the APs in the network for all the buildings. To span the same VLAN on multiple ports of the FGT a hardware switch can be configured. It allows to use the same L2 network through different FGT ports.

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.
AEK
SuperUser
SuperUser

Hi Ahmad

If I understand your requirement, you need the same SSID on all APs.

Single SSID = Single Interface = Single range

AEK
AEK
ahmadking22
New Contributor III

yes exactly i need like this

 

king
king
AEK

So you create a FortiAP profile, add the SSID(s) to this profile, then assign the profile for all your managed APs.

AEK
AEK
spoojary
Staff
Staff

Configure DHCP servers for each VLAN associated with the APs in each building.

Enable the shared-subnet feature for each DHCP server to allow IP address allocation from the same range.

Set up DHCP relay agents for each building to forward DHCP requests to the FortiGate.

 

https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/486838/dhcp-shared-subnet-ne...

https://docs.fortinet.com/document/fortigate/7.4.3/administration-guide/486838/dhcp-shared-subnet

https://docs.fortinet.com/document/fortigate/7.4.1/administration-guide/783526/dhcp-servers-and-rela...

Siddhanth Poojary
Toshi_Esumi
SuperUser
SuperUser

Interestingly this many interpretations and suggestions. Yet another one.
I interpreted as [VLAN11+13+15] with one DHCP range.
How about combining all three VLAN interfaces into one software-switch? This can have only one interface/GW IP and subnet, therefore needs only one DHCP range.

Toshi

sw2090
SuperUser
SuperUser

maybe the most easiest way would be to create a dhcp relay on every vlan that relays to one specific dhcp server that has a pool covering all three vlan so they can get ip from the same nets.

 

-- 

"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams

-- "It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
ahmadking22
New Contributor III

 I have solved this problem

i putted more interface as switch after that i create VLAN for LAN ,AP and Server

king
king
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors