config switch-controller global
Configure FortiSwitch global settings.
config switch-controller global
Description: Configure FortiSwitch global settings.
set mac-aging-interval {integer}
set https-image-push [enable|disable]
set vlan-all-mode [all|defined]
set vlan-optimization [enable|disable]
set disable-discovery <name1>, <name2>, ...
set mac-retention-period {integer}
set default-virtual-switch-vlan {string}
set dhcp-server-access-list [enable|disable]
set log-mac-limit-violations [enable|disable]
set mac-violation-timer {integer}
set sn-dns-resolution [enable|disable]
set mac-event-logging [enable|disable]
set bounce-quarantined-link [disable|enable]
set quarantine-mode [by-vlan|by-redirect]
set update-user-device {option1}, {option2}, ...
config custom-command
Description: List of custom commands to be pushed to all FortiSwitches in the VDOM.
edit <command-entry>
set command-name {string}
next
end
set fips-enforce [disable|enable]
set firmware-provision-on-authorization [enable|disable]
end
config switch-controller global
Parameter |
Description |
Type |
Size |
Default |
||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
mac-aging-interval |
Time after which an inactive MAC is aged out . |
integer |
Minimum value: 10 Maximum value: 1000000 |
300 |
||||||||||||
https-image-push |
Enable/disable image push to FortiSwitch using HTTPS. |
option |
- |
enable |
||||||||||||
|
|
|||||||||||||||
vlan-all-mode |
VLAN configuration mode, user-defined-vlans or all-possible-vlans. |
option |
- |
defined |
||||||||||||
|
|
|||||||||||||||
vlan-optimization |
FortiLink VLAN optimization. |
option |
- |
enable |
||||||||||||
|
|
|||||||||||||||
disable-discovery |
Prevent this FortiSwitch from discovering. Managed device ID. |
string |
Maximum length: 79 |
|
||||||||||||
mac-retention-period |
Time in hours after which an inactive MAC is removed from client DB (0 = aged out based on mac-aging-interval). |
integer |
Minimum value: 0 Maximum value: 168 |
24 |
||||||||||||
default-virtual-switch-vlan |
Default VLAN for ports when added to the virtual-switch. |
string |
Maximum length: 15 |
|
||||||||||||
dhcp-server-access-list |
Enable/disable DHCP snooping server access list. |
option |
- |
disable |
||||||||||||
|
|
|||||||||||||||
log-mac-limit-violations |
Enable/disable logs for Learning Limit Violations. |
option |
- |
disable |
||||||||||||
|
|
|||||||||||||||
mac-violation-timer |
Set timeout for Learning Limit Violations (0 = disabled). |
integer |
Minimum value: 0 Maximum value: 4294967295 |
0 |
||||||||||||
sn-dns-resolution |
Enable/disable DNS resolution of the FortiSwitch unit's IP address by use of its serial number. |
option |
- |
enable |
||||||||||||
|
|
|||||||||||||||
mac-event-logging |
Enable/disable MAC address event logging. |
option |
- |
disable |
||||||||||||
|
|
|||||||||||||||
bounce-quarantined-link |
Enable/disable bouncing (administratively bring the link down, up) of a switch port where a quarantined device was seen last. Helps to re-initiate the DHCP process for a device. |
option |
- |
disable |
||||||||||||
|
|
|||||||||||||||
quarantine-mode |
Quarantine mode. |
option |
- |
by-vlan |
||||||||||||
|
|
|||||||||||||||
update-user-device |
Control which sources update the device user list. |
option |
- |
mac-cache lldp dhcp-snooping l2-db l3-db |
||||||||||||
|
|
|||||||||||||||
fips-enforce |
Enable/disable enforcement of FIPS on managed FortiSwitch devices. |
option |
- |
enable |
||||||||||||
|
|
|||||||||||||||
firmware-provision-on-authorization |
Enable/disable automatic provisioning of latest firmware on authorization. |
option |
- |
disable |
||||||||||||
|
|
config custom-command
Parameter |
Description |
Type |
Size |
Default |
---|---|---|---|---|
command-name |
Name of custom command to push to all FortiSwitches in VDOM. |
string |
Maximum length: 35 |
|