12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

System Network<br />

Interface<br />

When an interface is included in an aggregate interface, it is not listed on the<br />

System > Network > Interface page. It is no longer individually configurable and<br />

is not available for inclusion in firewall policies, VIPs, IP pools or routing.<br />

Figure 38: Settings for an 802.3ad aggregate interface<br />

To create an 802.3ad Aggregate interface<br />

1 Go to System > Network > Interface.<br />

2 Select Create New.<br />

3 In the Name field, enter a name for the aggregated interface.<br />

The interface name must not be the same as any other interface, zone or VDOM.<br />

4 From the Type list, select 802.3ad Aggregate.<br />

5 One at a time, in the Available Interfaces list, select each interface that you want<br />

to include in the aggregate interface and then select the right arrow button to<br />

move it to the Selected Interfaces list.<br />

6 If this interface operates in NAT/Route mode, you need to configure addressing<br />

for it. For information about dynamic addressing, see:<br />

• “Configuring DHCP on an interface” on page 88<br />

• “Configuring an interface for PPPoE or PPPoA” on page 90<br />

7 Configure other interface options as required.<br />

8 Select OK.<br />

Creating a redundant interface<br />

You can <strong>com</strong>bine two or more physical interfaces to provide link redundancy. This<br />

feature allows you to connect to two or more switches to ensure connectivity in the<br />

event one physical interface or the equipment on that interface fails.<br />

Redundant links differ from link aggregation in that traffic is only going over one<br />

interface at any time (no matter how many are in the redundant link), but<br />

redundant interfaces allow for more robust configurations with fewer possible<br />

points of failure. This is important in a fully meshed HA configuration.<br />

<strong>FortiGate</strong> firmware on models 800 and higher implements redundant interfaces.<br />

An interface is available to be in a redundant interface only if<br />

• it is a physical interface, not a VLAN interface<br />

• it is not already part of an aggregated or redundant interface<br />

• it is in the same VDOM as the redundant interface<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

01-30005-0203-20070830 87

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!