Fortinet white logo
Fortinet white logo

Using a data interface LAG as the FCGP HA hardware session synchronization interface

Using a data interface LAG as the FCGP HA hardware session synchronization interface

Use the following configuration to create a data interface LAG. The members of the LAG can be any data interfaces that can be added to LAGs as supported by your FortiGate model. The FortiGate-4200F, 4201F, 4400F, and 4401F HA1, HA2, AUX1, and AUX2 interfaces cannot be added to a LAG.

Note

If you use a LAG as the hardware session synchronization interface, the LAG cannot be monitoring by HA interface monitoring.

config system interface

edit HA-session-lag

set member port21 port22

end

Use the following command to set the LAG as the FGCP HA hardware session synchronization interface.

config system ha

set session-pickup enable

set hw-session-sync-dev HA-session-lag

end

For some FortiGates there is a limitation on the interfaces that can be used for hardware session synchronization. For example, for the FortiGate-1800F and 1801F you can only use the port25 to port40 interfaces as hardware session synchronization interfaces. On these FortiGates, the members of the HA hardware session synchronization LAG can only be interfaces that can be used as hardware session synchronization interfaces.

Using a data interface LAG as the FCGP HA hardware session synchronization interface

Using a data interface LAG as the FCGP HA hardware session synchronization interface

Use the following configuration to create a data interface LAG. The members of the LAG can be any data interfaces that can be added to LAGs as supported by your FortiGate model. The FortiGate-4200F, 4201F, 4400F, and 4401F HA1, HA2, AUX1, and AUX2 interfaces cannot be added to a LAG.

Note

If you use a LAG as the hardware session synchronization interface, the LAG cannot be monitoring by HA interface monitoring.

config system interface

edit HA-session-lag

set member port21 port22

end

Use the following command to set the LAG as the FGCP HA hardware session synchronization interface.

config system ha

set session-pickup enable

set hw-session-sync-dev HA-session-lag

end

For some FortiGates there is a limitation on the interfaces that can be used for hardware session synchronization. For example, for the FortiGate-1800F and 1801F you can only use the port25 to port40 interfaces as hardware session synchronization interfaces. On these FortiGates, the members of the HA hardware session synchronization LAG can only be interfaces that can be used as hardware session synchronization interfaces.