12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Interface<br />

System Network<br />

Switch Mode<br />

The internal interface on 100A, 200A <strong>FortiGate</strong> models is a four port switch.<br />

Normally the internal interface is configured as one interface shared by all four<br />

ports. Switch mode allows you to configure each interface on the switch<br />

separately with their own interfaces. The <strong>FortiGate</strong>-60B and FortiWiFi-60B internal<br />

interface is a 6-port switch that functions in the same way.<br />

The switch mode feature has two states - switch mode and interface mode. Switch<br />

mode is the default mode with only one interface for the entire internal switch.<br />

Interface mode allows you to configure each of the internal switch interfaces<br />

separately. This allows you to assign different subnets and netmasks to each of<br />

the internal interfaces.<br />

Switch mode is only available on 100A and 200A models of Rev2.0 and higher<br />

and on all 60B models. Consult your release notes for the most current list of<br />

supported models for this feature.<br />

Note: FortiWifi 60B units do not support switch mode in the GUI interface. They do support<br />

switch mode in the CLI.<br />

Selecting the Switch Mode control on the System > Network > Interface screen<br />

takes you to the Switch Mode Management screen.<br />

!<br />

Caution: Before you are able to change between switch mode and interface mode all<br />

references to ‘internal’ interfaces must be removed. This includes references such as<br />

firewall policies, routing, DNS forwarding, DHCP services, VDOM interface assignments,<br />

VLANS, and routing. If they are not removed, you will not be able to switch modes, and you<br />

will see an error message.<br />

Figure 34: Switch Mode Management<br />

Switch Mode<br />

Interface Mode<br />

OK<br />

Cancel<br />

Select Switch Mode. Only one internal interface is displayed. This<br />

is the default mode.<br />

Select Interface Mode. All internal interfaces on the switch are<br />

displayed as individually configurable interfaces.<br />

Select to save your changes and return to the Interface screen.<br />

Select to discard your changes and return to the Interface screen.<br />

Switch mode in CLI<br />

In addition to the GUI controls, Switch Mode can be configured using CLI<br />

<strong>com</strong>mands:<br />

config system global<br />

set internal-switch-mode {interface | switch}<br />

end<br />

As in the GUI, if you have not removed all references to the internal interface(s)<br />

you will see error messages. Once you have removed these references, your<br />

<strong>FortiGate</strong> unit will reboot and be in the new switch mode.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

82 01-30005-0203-20070830

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!