I understand this is not the preferred method at all, but we have certain requirements within our DR site. Please let me know if this is possible and how to implement it. We have two datacenters that will have a L2 connection between them. We will stretch VLANs across this L2 connection, so that they live on both sides. This way the network will already be there and we can migrate VMs, do a restore and everything works. I need to know if we have 3 vlans that terminate on the fortigate, would I enable VRRP for each interface that the vlans live on? Also, would the virtual router for vrrp match the IP of the interface or would there not be an interface IP and only a vrrp virtual router IP? Please see attached diagram. Thank you.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
the diagram didn't come through it seems.
personally if you have layer 2 stretched i would just build one FortiGate cluster over that stretched network.
if you plan to have two clusters or two not standalone units and start using VRRP then things might get complicated and you have to consider asynchronous routing.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1710 | |
1093 | |
752 | |
446 | |
231 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.