Fortinet black logo

Administration Guide

Introduction

Introduction

This guide provides information about configuring a FortiSwitch unit in standalone mode. In standalone mode, you manage the FortiSwitch unit by connecting directly to the unit, either using the web-based manager (also known as the GUI) or the CLI.

If you will be managing your FortiSwitch unit using a FortiGate unit, refer to the FortiLink Guide—FortiSwitch Devices Managed by FortiOS 7.2.

If you will be managing your FortiSwitch unit using FortiLAN Cloud, see the FortiLAN Cloud User Guide.

If you will be managing your FortiSwitch unit using FortiSwitch Manager, see the FortiSwitch Manager Administration Guide.

This section covers the following topics:

Supported models

This guide is for all FortiSwitch models that are supported by FortiSwitchOS, which includes all of the D-series, E-series, and F-series models.

Refer to the FortiSwitch feature matrix for details about the features supported by each FortiSwitch model.

Whatʼs new in FortiSwitchOS 7.2.7

Release 7.2.7 provides the following new features:

  • The FS-424E-Fiber, FS-448E, FS-448E-POE, and FS-448E-FPOE models now support layer-2 Precision Time Protocol (PTP) transparent clock using the peer-to-peer mode. Previously, these switches just supported the layer-2 and layer-3 PTP transparent clock using the end-to-end mode. For more details, see Precision Time Protocol.

  • The FS-624F, FS-624F-FPOE, FS-648F, and FS-648F-FPOE models now support multichassis link aggregation groups (MCLAGs). For more information about MCLAGs, see MCLAG.

  • You can use a new CLI command to disable the FortiSwitch hardware Reset button while the OS is running. For more details, see Using the Reset button on FortiSwitch units.

  • You can now specify a tagged VLAN for users to be assigned to when the authentication server is unavailable. Previously, you could only specify an untagged VLAN. This feature is available with 802.1x MAC-based authentication. It is compatible with both Extensible Authentication Protocol (EAP) and MAC authentication bypass (MAB). For more details, see 802.1X authentication.

Before you begin

Before you start administrating your FortiSwitch unit, it is assumed that you have completed the initial configuration of the FortiSwitch unit, as outlined in the QuickStart Guide for your FortiSwitch model and have administrative access to the FortiSwitch unit’s GUI and CLI.

Introduction

This guide provides information about configuring a FortiSwitch unit in standalone mode. In standalone mode, you manage the FortiSwitch unit by connecting directly to the unit, either using the web-based manager (also known as the GUI) or the CLI.

If you will be managing your FortiSwitch unit using a FortiGate unit, refer to the FortiLink Guide—FortiSwitch Devices Managed by FortiOS 7.2.

If you will be managing your FortiSwitch unit using FortiLAN Cloud, see the FortiLAN Cloud User Guide.

If you will be managing your FortiSwitch unit using FortiSwitch Manager, see the FortiSwitch Manager Administration Guide.

This section covers the following topics:

Supported models

This guide is for all FortiSwitch models that are supported by FortiSwitchOS, which includes all of the D-series, E-series, and F-series models.

Refer to the FortiSwitch feature matrix for details about the features supported by each FortiSwitch model.

Whatʼs new in FortiSwitchOS 7.2.7

Release 7.2.7 provides the following new features:

  • The FS-424E-Fiber, FS-448E, FS-448E-POE, and FS-448E-FPOE models now support layer-2 Precision Time Protocol (PTP) transparent clock using the peer-to-peer mode. Previously, these switches just supported the layer-2 and layer-3 PTP transparent clock using the end-to-end mode. For more details, see Precision Time Protocol.

  • The FS-624F, FS-624F-FPOE, FS-648F, and FS-648F-FPOE models now support multichassis link aggregation groups (MCLAGs). For more information about MCLAGs, see MCLAG.

  • You can use a new CLI command to disable the FortiSwitch hardware Reset button while the OS is running. For more details, see Using the Reset button on FortiSwitch units.

  • You can now specify a tagged VLAN for users to be assigned to when the authentication server is unavailable. Previously, you could only specify an untagged VLAN. This feature is available with 802.1x MAC-based authentication. It is compatible with both Extensible Authentication Protocol (EAP) and MAC authentication bypass (MAB). For more details, see 802.1X authentication.

Before you begin

Before you start administrating your FortiSwitch unit, it is assumed that you have completed the initial configuration of the FortiSwitch unit, as outlined in the QuickStart Guide for your FortiSwitch model and have administrative access to the FortiSwitch unit’s GUI and CLI.