- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
issue with managed fortiswitches
hello all, i have 6 floors in a company , each floor has 2 or 3 edge switches and each office in the floor has a small tp-link switch (5port) that compine the PCs, and this small switch connected to the edge and all floors connected to two core switches working as MCLAG and all the switches are managed by fortigate.
i have 3 connection connected direct to the fortigate (ADSL , MPLS , Leased Line).
on the fortigate i have configured a vlan for each floor , when i enable these vlans and assign them to each floor i found a big packet loss in the network but when i work with one vlan for all floors all thing work fine with no isuue.
can anyone help with this issue?
- Labels:
-
FortiGate
-
FortiSwitch
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Ahmed
Is the packet loss inter-VLAN? Is there packet loss intra-VLAN as well?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello AEK
No there is no any packet loss inter vlan
The packet loss when ping from pc to 8.8.8.8
Another thing i want to know
My design is each edge connected to one peer of the MCLAG not the two.
Can this be the issue or not?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Ahmed
Can you share the following?
- A screenshot of your FortiLink config from menu Network > Interface
- A diagram showing how switches are interconnected and how connected with FGT
- FortiOS version and FortiSwitch OS versions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
hi AEK,
thanks for your replying its highly appreciated.
sorry i cannot take a screenshot now as the customer isnt available but i put two port on fortigate under fortilink and disable split. and all vlans under it.
regarding to the diagram this is the diagram
fortiOS is 7.4.7
FortiswitchOS is 7.4.5
 
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
So far seems correct.
Split should be disabled as you did.
If you access switches are 1xx series then you cant connect the last one to the second ToR/Core. So what you did should be correct.
Waiting for the screenshot. But meanwhile, did you use VLAN id 1 for any of the created VLANs?
Created on ‎03-10-2025 08:36 AM Edited on ‎03-10-2025 08:39 AM
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
but when i search i found that i should connect each edge to the two core that working MCLAG not one only is this correct?
no i didnt use vlan 1
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I mean when 1xx are chained you can't connect the last one to the second core. That's because 1xx doesn't support multi-homing when daisy-chained, while higher series support it.
However you can do so if the 1xx is standalone (for redundancy). This one is supported.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
hello AEK,
kindly find the screenshot of fortilink
 one of the fortilink memeber is down as i have unistalled the mclag currently and make all network work on one switch as below
 and again i faced the same issue.
and didnt know the reason for this till now
