- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
intervlan communication
Hi folks,
I have a setup at home with a FG40F firewall and a 124F fortiswitch.
I have 3 vlans in my network, and my switch is connected to my FG with fortilink.
Since the new subnets (and vlans ofc) my connectio to the SMB server dropped down to 500Mbit/s.
Is there any option to skip the traffic to FG while i want to reach another subnets devices?
eg.:
I have an SMB server in vlan 10
And my workstations in vlan 20
I have no clue how could i achive this, i used mikrotik devices before fortinet.
- Labels:
-
FortiGate
-
FortiSwitch
-
Routing
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
FG-40F has 5Gbps FW throughput so that should not be a problem. What kind of of policies / theat protection are you running between those networks?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
There is no threat protection turned on the policies and i have only 2 configured on these vlans,
Vlan 10 traffic to vlan 20, all protocol enable and vice versa. No NAT, no logging.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
And this problem doesn't occur if you move this workstation in same subnet/VLAN as SMB server? Just to make sure it's not something to do with workstation or server itself, even if it has been working before when you had Mikrotik devices.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
If they were in the same subnet (we didn't have any vlans before) everything worked fine, 8-900Mbit/s writing speed
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
What is your topology between Fortigate and FortiSwitch?
FCP-NS, FCP-PCS, FCP-SO, FCSS-NS, FCSS-PCS, FCSS-SASE
Created on ‎09-12-2024 12:39 AM Edited on ‎09-12-2024 12:39 AM
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Daisy chained FW switches, connected via fortilink and managed by the Fortigate.
FG
|
SW
/ \
Workstation SW
\
SMB server
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
While doing file transfer, check the switchport utilization by the command below. Check the switchport connected to Workstation, Fortigate, Switch to Switch and Switch to SMB Server.
diagnose switch physical-ports linerate <switch port#>
FCP-NS, FCP-PCS, FCP-SO, FCSS-NS, FCSS-PCS, FCSS-SASE
