A-P HA FortiGate Managing FortiSwitch Stack Architecture

Поделиться
HTML-код
  • Опубликовано: 5 ноя 2024

Комментарии • 24

  • @ausnetting
    @ausnetting 3 года назад +1

    Thanks Mike. Would probably suggest going to switch 1 and middle switch in your stack rather than the last switch - technically the first and last would be the same as doing the first and second switches in the stack. This will give you the best chance of not exceeding your max STP depth in the case that one of your 'stack' links goes down.

  • @anilbeharry
    @anilbeharry 4 года назад +1

    informative video. thank you. I do believe that hardware stack - dedicated stack ports - will greatly simplify the cabling and also improve throughput (on the backplane).

    • @FortinetGuru
      @FortinetGuru  4 года назад

      I don’t see fortinet going that far. I may be wrong though. I think they like the idea of any port being a “stack” port

  • @popoman20
    @popoman20 Год назад

    Love the video next time use a darker marker hard to see. Thanks again

  • @lurysherrera9990
    @lurysherrera9990 2 года назад

    Thanks Mike. What happens when the stack is connect to a pair of switches with fiber ports?

  • @steven.t27
    @steven.t27 3 месяца назад

    Just wondering if this is possible for active-active HA setup?

  • @andreasmilona3727
    @andreasmilona3727 9 месяцев назад

    Hello Mike, Just a quick question, i would like to have 2-Isp failover and FortiGate HA, but my question is: can i have 2x FortiSwitches run a failover ? So if 1x Switch fails then Secondary switch will take place. thank you

    • @FortinetGuru
      @FortinetGuru  9 месяцев назад

      As long as you duplicate ports and make sure the VLAN is utilized for internet and monitoring you would be fine.

  • @ashrafhelal9354
    @ashrafhelal9354 2 года назад

    does Fortinet has Core SW? in Cisco the Access SW I stack them and connect this stack to the Core SW. connect the Core SW to the ASA.

  • @bccmoreira
    @bccmoreira 5 лет назад

    Great video!

  • @josephholloway8971
    @josephholloway8971 5 лет назад +2

    Can you please do Fortigate HA with redundant ISP?

    • @FortinetGuru
      @FortinetGuru  5 лет назад

      Sure, that will be my next video to do. Possibly this weekend!

    • @jaime9344
      @jaime9344 5 лет назад

      Turn on SD-WAN on the FortiGate then use switches north of the FortiGate. If you want to do it without buying a switch you can do that too. Plug one ISP in FortiGate A, then the other ISP into FortiGate B. Configure a hardware based switch on both FortoGates and cross link them.

    • @ausnetting
      @ausnetting 3 года назад

      I'd set up 2 ISP VLANs on the switch side and use one port on one switch for ISP 1, then another port on the other switch for ISP 2. Then you could add those two VLAN interfaces as SD-WAN interfaces and continue configuring from there.

  • @luisgonzalez1449
    @luisgonzalez1449 3 года назад

    Is using a LAG LACP an option instead of a redundant link or are any cons?

  • @maam11485
    @maam11485 5 лет назад +1

    How can i link aggregate two links for fortilink to increase the fortilink through put from 1GB to 2GB or more

    • @ausnetting
      @ausnetting 3 года назад

      Hi Mohamed. You'll need a firewall that is capable of 802.3ad link aggregation. Go to Network -> Interfaces, and create a new interface, then select the 802.3ad link aggregation "type" from the drop-down box. If your fortigate doesn't have that option, then you won't be able to do it. Please note that for high-end firewalls, you want to make sure the links you're aggregating are attached to the same NPU if possible.

  • @D35TR00
    @D35TR00 4 года назад

    Gr8!! Thank u

  • @edwardorivera5023
    @edwardorivera5023 3 года назад

    Hello there,
    What about MC-LAG? I am looking to do MC-LAG for downstream (my servers). Can I use this setup and still do MC-LAG? When I read the documentation it seems like you cannot "forti link with split interface disabled" I will have only 2 switches in my Data Center and 10+ on branches.. Which seems that I am going to need FortiLink layer 3.. - docs.fortinet.com/document/fortiswitch/latest/devices-managed-by-fortios/780635/switch-redundancy-with-mclag

  • @darkhsu
    @darkhsu 5 лет назад

    Is it possible to setup two sets(or more) of fortilink?

    • @AndreasPetzel
      @AndreasPetzel 5 лет назад

      Joe Hsu 3 possibilities to build a switch stack. But only 1 stack can be build on a fortigate. In what scenario would you want to use more fortilinks?

    • @FortinetGuru
      @FortinetGuru  5 лет назад +1

      Yes you can. You can via CLI. There is a CLI command to allow multiple fortilink interfaces

  • @axxoaxx288
    @axxoaxx288 4 месяца назад

    very bad pen used for such a good video