Advertisement

This FortiSwitch-5003B System Guide describes FortiSwitch-5003B hardware features, how to install a
FortiSwitch-5003B board in a FortiGate-5000 series chassis, and how to configure the FortiSwitch-5003B system for your
network.
The most recent versions of this and all FortiGate-5000 series documents are available from the
the
Fortinet Technical Documentation
Access to Fortinet customer services, such as firmware updates, support, and FortiGuard services, requires product
registration. You can register your FortiSwitch-5003B at http://support.fortinet.com.
FortiSwitch-5003B System Guide
01-400-134822-20120216
FortiSwitch-5003B
web site (http://docs.fortinet.com).
System Guide
FortiGate-5000
page of

Advertisement

Table of Contents
loading

Summary of Contents for Fortinet FortiSwitch-5003B

  • Page 1 System Guide This FortiSwitch-5003B System Guide describes FortiSwitch-5003B hardware features, how to install a FortiSwitch-5003B board in a FortiGate-5000 series chassis, and how to configure the FortiSwitch-5003B system for your network. The most recent versions of this and all FortiGate-5000 series documents are available from the...
  • Page 2: Warnings And Cautions

    ESD connector such as the ESD sockets provided on FortiGate-5000 series chassis. • Make sure all FortiGate-5000 series components have reliable grounding. Fortinet recommends direct connections to the building ground. • If you install a FortiGate-5000 series component in a closed or multi-unit rack assembly, the operating ambient temperature of the rack environment may be greater than room ambient.
  • Page 3: Table Of Contents

    FortiSwitch-5003B mounting components ..... . . 20 Inserting a FortiSwitch-5003B board ......21 Shutting down and removing a FortiSwitch-5003B board .
  • Page 4 Customer service and support ......35 Fortinet products End User License Agreement ....35...
  • Page 5: Fortiswitch-5003B System

    Table 1 lists FortiGate-5000 series chassis that can support the FortiSwitch-5003B board. For most up-to-date list of all chassis that can support the FortiSwitch-5003B board see the FortiSwitch-5003B Release Notes. Table 1: FortiGate-5000 series chassis that support the FortiSwitch-5003B board...
  • Page 6 (Slots 2 to 14 if the FortiSwitch-5003B board is installed in slot 1. Slots 1 and 3 to 14 if the FortiSwitch-5003B board is installed in slot 2.). • One 10-gigabit fabric backplane channel for layer-2 fabric backplane switching between FortiGate-5001B boards installed in the same chassis as the FortiSwitch-5003B board.
  • Page 7: Physical Description

    614BTU/h Front panel components From the FortiSwitch-5003B font panel you can view the status of the board LEDs to verify that the board is functioning normally. The front panel also contains connectors to the fabric and base channels, an out of band management Ethernet interface, and an RJ-45 RS-232 console port for connecting to the FortiSwitch-5003B CLI.
  • Page 8 PWR (Power) Green The FortiSwitch-5003B board is powered on. The FortiSwitch-5003B board is powered on. Flashing The FortiSwitch-5003B is starting up. If this LED is STA (Status) Green flashing at any time other than system startup, a fault condition may exist.
  • Page 9: About The Sh1 And Sh2 Leds

    SH1 and SH2 LEDs indicate the status of the connections between the FortiSwitch-5003B board and the shelf manager. • In most chassis if a FortiSwitch-5003B board is installed in slot 1 the SH1 LED will light if the board can communicate with the shelf manager in shelf manager slot 1 and the SH2 LED will light if the board can communicate with a shelf manager in shelf manager slot 2.
  • Page 10: Fabric Channel Interfaces

    1/2 is deactivated. * You can configure settings for FortiSwitch-5003B fabric interfaces from the FortiSwitch-5003B CLI. The CLI columns show the names of the interfaces as they appear on the FortiSwitch-5003B CLI. The fabric network activity LEDs show links and network activity for the interfaces and...
  • Page 11: More About Fabric Backplane Interfaces And Chassis Slots

    3 to 14. More about Fabric backplane interfaces and chassis slots The FortiSwitch-5003B board supports up to slots for 13 connections to the fabric backplane. Normally these slots correspond to one connection between switch/hub slots (slot-1/2) and then 12 more connections to the 12 node slots in an ATCA chassis (slot-3 to slot-14).
  • Page 12 Tertiary connection to chassis slot 3.* slot-14 Tertiary connection to chassis slot 4.* *Current FortiSwitch-5003B series boards do not support the secondary and tertiary connections. If a FortiGate-5060 chassis contains two FortiSwitch-5003B boards, connections between them can occur using slot-7, slot-12, and may occur using slot-1/2 if this interface is activated.
  • Page 13: Base Channel Interfaces

    * You can configure settings for FortiSwitch-5003B base interfaces from the FortiSwitch-5003B CLI. The CLI columns show the names of the interfaces as they appear on the FortiSwitch-5003B CLI. Front panel connectors...
  • Page 14: Fortiswitch-5003B Configurations

    LEDs can be ignored. FortiSwitch-5003B configurations You can operate the FortiSwitch-5003B board as a fabric and base channel layer-2 switch for any FortiGate-5000 board that has base and fabric channel connectivity. The FortiSwitch-5003B board is compatible with all FortiGate-5000 boards.
  • Page 15: Fabric 10-Gigabit Switching Within A Chassis

    Internet and a private internal network. In the Figure, the Internet is connected to the FortiSwitch-5003B board in chassis slot 1 and the private internal network is connected to the FortiSwitch-5003B board in chassis slot 2. Traffic between these networks is switched across the chassis backplane to the FortiGate-5001B board for security processing.
  • Page 16 If you install a second FortiSwitch-5003B board you can configure active-passive ELBC HA. In an HA configuration, if the FortiSwitch-5003B board in slot 1 fails, all sessions are failed over to the FortiSwitch-5003B board in slot 2 with only a minimal traffic interruption.
  • Page 17: Hardware Installation

    The SFP transceivers are inserted into cage sockets numbered F1 to F8 for the fabric channel or B1 and B2 for the base channel on the FortiSwitch-5003B front panel. You can install the SFP transceivers before or after inserting the FortiSwitch-5003B board into a FortiGate-5000 series or other ATCA chassis.
  • Page 18: Changing Fortiswitch-5003B Sw2 Switch Settings

    FortiSwitch-5003B board in a chassis that does not contain a functioning shelf manager. The default SW2 setting is required for most uses of the FortiSwitch-5003B including ELBCv3. The SW2 switch on the FortiSwitch-5003B board is factory set by Fortinet to detect a shelf manager (Figure 5).
  • Page 19 (Requires Shelf Manager) By default a FortiSwitch-5003B board will not start up if the board is installed in a chassis that does not contain a shelf manager or that contains a shelf manager that is not operating. Before installing a FortiSwitch-5003B in a chassis that does not contain an...
  • Page 20: Fortiswitch-5003B Mounting Components

    “Inserting a FortiSwitch-5003B board” on page FortiSwitch-5003B mounting components To install a FortiSwitch-5003B board you slide the board into a hub/switch slot in the front of an ATCA chassis (usually slot 1 or 2) and then use the mounting components to lock the board into place in the slot.
  • Page 21: Inserting A Fortiswitch-5003B Board

    Only then will the FortiSwitch-5003B board power-on and start up correctly. FortiSwitch-5003B boards are hot swappable. The procedure for inserting a FortiSwitch-5003B board into a chassis slot is the same whether or not the chassis is powered on. FortiSwitch-5003B System Guide 01-400-134822-20120216 http://docs.fortinet.com/...
  • Page 22 Hardware installation To insert a FortiSwitch-5003B board into a chassis slot Do not carry the FortiSwitch-5003B board by holding the handles or retention screws. When inserting or removing the FortiSwitch-5003B board from a chassis slot, handle the board by the front panel. The handles are not designed for carrying the board. If the handles become bent or damaged the FortiSwitch-5003B board may not align correctly in the chassis slot.
  • Page 23 The handles should hook into the sides of the chassis slot. Closing the handles draws the FortiSwitch-5003B board into place in the chassis slot and into full contact with the chassis backplane. The FortiSwitch-5003B front panel should be in contact with the chassis front panel.
  • Page 24: Shutting Down And Removing A Fortiswitch-5003B Board

    FortiSwitch-5003B board from an ATCA chassis slot. FortiSwitch-5003B boards are hot swappable. The procedure for removing a FortiSwitch-5003B board from a chassis slot is the same whether or not the chassis is powered on. To remove a FortiSwitch-5003B board from a chassis slot Do not carry the FortiSwitch-5003B board by holding the handles or retention screws.
  • Page 25 Handle Fully Closed and Locked 10 Carefully slide the board completely out of the slot. 11 Re-attach the protective metal frame if you are going ship the FortiSwitch-5003B board or store it outside of a chassis. FortiSwitch-5003B System Guide 01-400-134822-20120216...
  • Page 26: Power Cycling A Fortiswitch-5003B Board

    Hardware installation Power cycling a FortiSwitch-5003B board This section describes how to cycle the power on a FortiSwitch-5003B board by opening the right handle (the lower handle when the board is installed vertically in a FortiGate-5140 chassis) to activate a switch that cycles the power without removing the board from the chassis.
  • Page 27: Troubleshooting

    Hardware installation Troubleshooting 8 Fully tighten the retention screws to lock the FortiSwitch-5003B board into position in the chassis slot. Troubleshooting This section describes the following troubleshooting topics: • FortiSwitch-5003B does not startup FortiSwitch-5003B does not startup Positioning of FortiSwitch-5003B handles and a few other causes may prevent a FortiSwitch-5003B board for starting up correctly.
  • Page 28 Troubleshooting Hardware installation FortiSwitch-5003B System Guide 01-400-134822-20120216 http://docs.fortinet.com/...
  • Page 29: Quick Configuration Guide

    FortiSwitch-5003B Quick Configuration Guide This section is a quick start guide to connecting and configuring a FortiSwitch-5003B board. Before using this chapter, your FortiGate-5000 series or compatible ATCA chassis should be mounted and connected to your power system. In addition, your FortiSwitch-5003B board should be inserted into the chassis.
  • Page 30: Basic Configuration

    Basic configuration Quick Configuration Guide At any time during the configuration process, if you run into problems, you can reset the FortiSwitch-5003B board to the factory defaults and start over. From the CLI enter execute factory-reset. Basic configuration Use the information in this section to configuration basic configuration settings that connect the FortiSwitch-5003B board to your network.
  • Page 31: Cli

    4 Go to Switch > Fabric Channel > STP Instance to add, edit, or delete STP instances. 1 Use the serial cable supplied with your FortiSwitch-5003B board to connect the front panel RJ-45 CONSOLE port to the management computer serial port.
  • Page 32: Upgrading Fortiswitch-5000 Series Firmware

    1 Go to System > Status > Dashboard > System Information. 2 Select Update beside Firmware Version. To upgrade the firmware from the CLI To use the following procedure, you must have a TFTP server the FortiSwitch-5003B board can connect to. 1 Make sure the TFTP server is running.
  • Page 33: Additional Configuration

    Disabling the front panel F8 interface and enabling the fabric backplane interconnect (slot-1/2) Because of the number of available ports in the FortiSwitch-5003B switch hardware, front panel interface F8 and fabric backplane interconnection between channel 1 and channel 2 (slot-1/2), share the same FortiSwitch-5003B port. By default, the active connection is set to front panel interface F8.
  • Page 34: Changing The System Time And Host Name

    Changing the switch fabric-channel configuration If you are using the FortiSwitch-5003B system for link aggregation or just to pass VLANs you need to use the config switch fabric-channel command. This command has several options that can be used to: •...
  • Page 35: Training Services

    FortiSwitch-5003B For more information Training Services Fortinet Training Services offers courses that orient you quickly to your new equipment, and certifications to verify your knowledge level. Fortinet training programs serve the needs of Fortinet customers and partners world-wide. Visit Fortinet Training Services at http://campus.training.fortinet.com, or email training@fortinet.com.
  • Page 36 For absolute clarity, any such warranty will be limited to performance in the same ideal conditions as in Fortinet’s internal lab tests. Fortinet disclaims in full any guarantees. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication without notice, and the most current version of the publication shall be applicable.

Table of Contents