Configuring VLANs in the switch controller
VLANs will be created for the following items:
- Point of Sales (POS) systems
- Employee WiFi
- Guest WiFi
- Security Cameras
- Phones
Following is a summary of the procedure:
- Create a VLAN. See Creating VLANs.
- Configure FortiSwitch ports. See Configure FortiSwitch ports.
Repeat these steps for each VLAN you will use. For example:
Branch subnet
|
10.0.1.0/24 |
Staff |
10.0.1.129/26 (10.0.1.128 - 10.0.1.191) |
Security Cameras |
10.0.1.193/27 (10.0.1.192 – 10.0.1.223) |
POS subnet |
10.0.1.225/28 (10.0.1.224 – 10.0.1.239) |
Voice subnet |
10.0.1.241/28 (10.0.1.240 – 10.0.1.255) |
Reserved for Staff wireless |
10.0.1.0/25 (10.0.1.0 - 10.0.1.127) |
Creating VLANs
To create VLANs in the switch controller:
- Go to WiFi & Switch Controller > FortiSwitch VLANs, and click Create New. The New Interface pane is displayed.
- Set the following options to create a VLAN for POS:
- Set Interface Name to POS.
- Set VLAN ID to 100.
- Set Color to Red.
- Set Role to LAN.
- In the IP/Netmask box, enter a subnet for your POS. In this example 10.0.1.225/28 is used.
- Enable DHCP Server for IPv4 or IPv6, if required.
- Enable Device detection.
- Enable Block intra-VLAN traffic.
- Click OK. The VLAN is created.
Configure FortiSwitch ports
To configure FortiSwitch ports:
- Go to WiFi & Switch Controller > FortiSwitch Ports.
- Click a port row.
- Click the Native VLAN column in one of the selected entries to change the native VLAN.
- Select the appropriate VLAN from the displayed list. The new value is assigned to the selected port.
- Click the + icon in the Allowed VLANs column to change the allowed VLANs.
- Select one or more of the VLANs (or the value all) from the displayed list. The new value is assigned to the selected port.