So i'm completely new to Fortinet and have a new 60F and S124EP switch for my lab. The 60F is connected to Forticloud and the S124EP is connected to the 60F using FortiLink. I'm looking at building out a few VLAN's and having a hard time understanding the best place for the gateway to live for these. Should everything be built on the Fortiswitch and have that do DHCP and everything or should all the VLAN interfaces be built on the 60F? Suggestions? Advantages one way or another?
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Fortilinks are management protocol specific for FGT and FortiSW integration. You can read up about them here.
Ken Felix
PCNSE
NSE
StrongSwan
Depends on what security needs. Do you want to protect traffic between vlans ? if yes than put the vlans on the fortigate and trunk them to the switch keep in mind throughput for internal vlan-2-vlan is going to be limited the firewall and it's performance. So a BIG winded backup could be impacted if other vlans traffic needs bandwidth.
Ken Felix
PCNSE
NSE
StrongSwan
emnoc, Thank You. That is basically what I thought, since the switch isn't L3. Normally I build the vlans on a L3 Core switch but since that is not an option here. I was just confused by those whole concept of "FortiLink" and what that really does and if it changes anything.
Fortilinks are management protocol specific for FGT and FortiSW integration. You can read up about them here.
Ken Felix
PCNSE
NSE
StrongSwan
emnoc wrote:Thank YouFortilinks are management protocol specific for FGT and FortiSW integration. You can read up about them here.
Ken Felix
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1632 | |
1063 | |
749 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.