HA in-band management for management interfaces
The FortiGate 7000E now supports FGCP HA in-band management for FortiGate 7000E management interfaces and the management interface LAG.
HA in-band management allows you to add a second management IP address to one or more FortiGate 7000E management interfaces. The management IP address is accessible from the network that the interface is connected to. This setting is not synchronized, so each FortiGate 7000E in the cluster can have their own in-band management IP addresses; providing management access to the secondary FortiGate 7000E.
FortiGate 7000E does not support HA in-band management for data interfaces. |
HA in-band management configuration:
config vdom
edit mgmt-vdom
config system interface
edit mgmt
set management-ip <ip address>
end
You can also remove individual mgmt interfaces from the FortiGate 7000E management interface LAG and add an in-band management address to these interfaces.
The management-ip
option is available only when HA is enabled.
To support HA in-band management, the FortiGate 7000E handles Cluster virtual MAC addresses in the same way as other FortiGates.