I have a scenario of 2 fortigates in version 7 and I already have them talking 2 vxlan and the machines in each Fortinet can ping each other.
But I can't put ip to the vlan interfaces, so that the machine behind each firewall can have a connection, if it were the case, outside the firewall, regards
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hello nocadn,
Thank you for using the Community Forum.
I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Regards,
Hello,
I have found this document:
Could you please tell me if it helps?
Regards,
Hello,
I am assuming that you have gateway IP on your software-switch that is connecting VXLAN VTEP and local vlan. And then, if you want to have 2 gateways, in case something will go wrong with Ipsec tunnel or connection between FortiGates, VRRP should help you.
You will have one virtual gateway IP and if connection between fortigates go down, each local subnet should be able to communicate with internet as local FortiGate should have active VRRP gateway IP.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1688 | |
1087 | |
752 | |
446 | |
227 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.