External Switch Configuration - Fortinet 5003A Fabric And Base Backplane Communications Manual

Fortinet fortiswitch brochure
Hide thumbs Also See for 5003A:
Table of Contents

Advertisement

Example active-passive redundant link configuration

External switch configuration

38
All of the FortiGate-5001A boards must be operating in transparent mode and all
must have the same configuration. In this redundant configuration, traffic can be
re-directed from one fabric channel to another after a FortiSwitch-5003A fails or if
you change the MSTP configuration. To make sure the FortiGate-5001A boards
can continue to process traffic after a failure or MSTP configuration change you
must add redundant configurations to both fabric interfaces. This means adding 4
VLAN interfaces to each fabric interface (one for each VLAN tag) and configuring
duplicate firewall policies and routing for both sets of VLAN interfaces.
Figure 15: Redundant link aggregation configuration
External Networks
Internal and external
10-gigabit networks
connected to
FortiSwitch-5003A
front panel interface F7
and to fabric channels
1 and 2
Distributed 10-gigabit
data communication
on fabric channel 2
13
Distributed 10-gigabit
data communication
on fabric channel 1
0
The external switch requires the following configuration settings. Example
commands are shown for an HP procurve 3500yl switch with interfaces A1 and A4
connected to the FortiSwitch-5003A boards. The external switch acts as the root
for spanning tree instance 0.
1
Create an MSTP configuration that includes a name and a revision. For example,
if the name is tree_1 and the revision is 1:
spanning-tree config-name "tree_1"
spanning-tree config-revision 1
FortiSwitch-5003A and 5003 Fabric and Base Backplane Communications Guide
FortiGate-5140 fabric backplane communication
Internal Networks
External Switch
VLAN
Tagged
Traffic
5140SAP
SERIAL 1
5140
11
9
7
5
3
1
2
4
6
8
FILTER
1
2
FA N T R AY
FA N T R AY
SERIAL 2
ALARM
10
12
14
ETH0 ETH1
Six FortiGate-RTM-XB2
ETH0
Service
modules installed in RTM
RESET
STATUS
slots 6, 8, 9, 10, 11, and 13 to
Hot Swap
provide 10-gigabit
1 2
fabric interfaces and
NP2 acceleration for each
ETH0 ETH1
FortiGate-5001A board.
ETH0
Service
RESET
STATUS
Hot Swap
FA N T R AY
01-30000-85717-20081205

Advertisement

Table of Contents
loading

This manual is also suitable for:

5003Fortiswitch-5003aFortiswitch-5003

Table of Contents