Fortinet black logo

Handbook

FortiSwitch devices managed by FortiOS

6.0.0
Copy Link
Copy Doc ID 4afb0436-a998-11e9-81a4-00505692583a:173258
Download PDF

FortiSwitch devices managed by FortiOS

This section provides information about how to set up and configure managed FortiSwitch units using the FortiGate unit (termed “using FortiSwitch in FortiLink mode”).

NOTE: FortiLink is not supported in transparent mode.

The maximum number of supported FortiSwitch units depends on the FortiGate model:

FortiGate Model Range

Number of FortiSwitch Units Supported

Up to FortiGate-98 and FortiGate-VM01

8

FortiGate-100 to 280 and FortiGate-VM02

24

FortiGate-300 to 5xx

48

FortiGate-600 to 900 and FortiGate-VM04

64

FortiGate-1000 and up

128

FortiGate-3xxx and up and FortiGate-VM08 and up

300

Supported models

The following table shows the FortiSwitch models that support FortiLink mode.

FortiGate and FortiWifi Models

3x, 5x, 6x, 7x, 8x, 9x, 1xx, 2xx, 3xx, 4xx, 5xx, 6xx, 8xx, 9xx, 1xxxx, 2xxxx, 3xxx

FortiSwitch Models

D and E Series

FortiOS 5.6 GA and later

For FortiSwitch D-series models, FortiSwitchOS 3.6.4 GA or later is required for all managed switches.

For FortiSwitch E-series models, FortiSwitchOS 6.0.0 GA or later is required for all managed switches.

Note

New models (NPI releases) might not support FortiLink. Contact Customer Service & Support to check support for FortiLink.

Support of FortiLink features

The following table lists the FortiSwitch models supported by FortiLink features.

FortiLink Features FortiSwitch Models

Centralized VLAN Configuration

D-series, E-series

Switch POE Control

D-series, E-series

Link Aggregation Configuration

D-series, E-series

Spanning Tree Protocol (STP)

D-series, E-series

LLDP/MED

D-series, E-series

IGMP Snooping

Not supported on 112D-POE, 1xxE-Series

802.1x Authentication (Port-based, MAC-based, MAB)

D-series, E-series

Syslog Collection

D-series, E-series

DHCP Snooping

Not supported on 1xxE-Series

Device Detection

D-series, E-series

Support FortiLink FortiGate in HA Cluster

D-series, E-series

LAG support for FortiLink Connection

D-series, E-series

Active-Active Split MLAG from FortiGate to FortiSwitch units for Advanced Redundancy

Not supported on FS-1xx Series

sFlow

Not supported on 1xxE-Series

Dynamic ARP Inspection (DAI)

Not supported on 1xxE-Series

Port Mirroring

D-series, E-series

RADIUS Accounting Support

Not supported on 1xxE-Series

Centralized Configuration

D-series, E-series

Access VLAN

Not supported on 1xxE-Series, 112D-POE

STP BDPU Guard, Root Guard, Edge Port

D-series, E-series

Loop Guard

D-series, E-series

Switch admin Password

D-series, E-series

Storm Control

D-series, E-series

802.1x-Authenticated Dynamic VLAN Assignment

D-series, E-series

Host Quarantine on Switch Port

D-series, E-series

QoS

Not supported on 1xxE-Series, 112D-POE

Centralized Firmware Management

D-series, E-series

Before you begin

Before you configure the managed FortiSwitch unit, the following assumptions have been made in the writing of this manual:

  • You have completed the initial configuration of the FortiSwitch unit, as outlined in the QuickStart Guide for your FortiSwitch model, and you have administrative access to the FortiSwitch GUI and CLI.
  • You have installed a FortiGate unit on your network and have administrative access to the FortiGate GUI and CLI.

FortiSwitch devices managed by FortiOS

This section provides information about how to set up and configure managed FortiSwitch units using the FortiGate unit (termed “using FortiSwitch in FortiLink mode”).

NOTE: FortiLink is not supported in transparent mode.

The maximum number of supported FortiSwitch units depends on the FortiGate model:

FortiGate Model Range

Number of FortiSwitch Units Supported

Up to FortiGate-98 and FortiGate-VM01

8

FortiGate-100 to 280 and FortiGate-VM02

24

FortiGate-300 to 5xx

48

FortiGate-600 to 900 and FortiGate-VM04

64

FortiGate-1000 and up

128

FortiGate-3xxx and up and FortiGate-VM08 and up

300

Supported models

The following table shows the FortiSwitch models that support FortiLink mode.

FortiGate and FortiWifi Models

3x, 5x, 6x, 7x, 8x, 9x, 1xx, 2xx, 3xx, 4xx, 5xx, 6xx, 8xx, 9xx, 1xxxx, 2xxxx, 3xxx

FortiSwitch Models

D and E Series

FortiOS 5.6 GA and later

For FortiSwitch D-series models, FortiSwitchOS 3.6.4 GA or later is required for all managed switches.

For FortiSwitch E-series models, FortiSwitchOS 6.0.0 GA or later is required for all managed switches.

Note

New models (NPI releases) might not support FortiLink. Contact Customer Service & Support to check support for FortiLink.

Support of FortiLink features

The following table lists the FortiSwitch models supported by FortiLink features.

FortiLink Features FortiSwitch Models

Centralized VLAN Configuration

D-series, E-series

Switch POE Control

D-series, E-series

Link Aggregation Configuration

D-series, E-series

Spanning Tree Protocol (STP)

D-series, E-series

LLDP/MED

D-series, E-series

IGMP Snooping

Not supported on 112D-POE, 1xxE-Series

802.1x Authentication (Port-based, MAC-based, MAB)

D-series, E-series

Syslog Collection

D-series, E-series

DHCP Snooping

Not supported on 1xxE-Series

Device Detection

D-series, E-series

Support FortiLink FortiGate in HA Cluster

D-series, E-series

LAG support for FortiLink Connection

D-series, E-series

Active-Active Split MLAG from FortiGate to FortiSwitch units for Advanced Redundancy

Not supported on FS-1xx Series

sFlow

Not supported on 1xxE-Series

Dynamic ARP Inspection (DAI)

Not supported on 1xxE-Series

Port Mirroring

D-series, E-series

RADIUS Accounting Support

Not supported on 1xxE-Series

Centralized Configuration

D-series, E-series

Access VLAN

Not supported on 1xxE-Series, 112D-POE

STP BDPU Guard, Root Guard, Edge Port

D-series, E-series

Loop Guard

D-series, E-series

Switch admin Password

D-series, E-series

Storm Control

D-series, E-series

802.1x-Authenticated Dynamic VLAN Assignment

D-series, E-series

Host Quarantine on Switch Port

D-series, E-series

QoS

Not supported on 1xxE-Series, 112D-POE

Centralized Firmware Management

D-series, E-series

Before you begin

Before you configure the managed FortiSwitch unit, the following assumptions have been made in the writing of this manual:

  • You have completed the initial configuration of the FortiSwitch unit, as outlined in the QuickStart Guide for your FortiSwitch model, and you have administrative access to the FortiSwitch GUI and CLI.
  • You have installed a FortiGate unit on your network and have administrative access to the FortiGate GUI and CLI.