Using a data interface LAG as the FCGP HA hardware session synchronization interface
Use the following configuration to create a data interface LAG. The members of the LAG can be any data interfaces that can be added to LAGs as supported by your FortiGate model. The FortiGate-4200F, 4201F, 4400F, and 4401F HA1, HA2, AUX1, and AUX2 interfaces cannot be added to a LAG.
If you use a LAG as the hardware session synchronization interface, the LAG cannot be monitoring by HA interface monitoring. |
config system interface
edit HA-session-lag
set member port21 port22
end
Use the following command to set the LAG as the FGCP HA hardware session synchronization interface.
config system ha
set session-pickup enable
set hw-session-sync-dev HA-session-lag
end
For some FortiGates there is a limitation on the interfaces that can be used for hardware session synchronization. For example, for the FortiGate-1800F and 1801F you can only use the port25 to port40 interfaces as hardware session synchronization interfaces. On these FortiGates, the members of the HA hardware session synchronization LAG can only be interfaces that can be used as hardware session synchronization interfaces.