FortiSwitch devices managed by FortiOS
This section provides information about how to set up and configure managed FortiSwitch units using the FortiGate unit (termed “using FortiSwitch in FortiLink mode”).
NOTE: FortiLink is not supported in transparent mode.
The maximum number of supported FortiSwitch units depends on the FortiGate model:
FortiGate Model Range |
Number of FortiSwitch Units Supported |
---|---|
Up to FortiGate-98 and FortiGate-VM01 |
8 |
FortiGate-100 to 280 and FortiGate-VM02 |
24 |
FortiGate-300 to 5xx |
48 |
FortiGate-600 to 900 and FortiGate-VM04 |
64 |
FortiGate-1000 and up |
128 |
FortiGate-3xxx and up and FortiGate-VM08 and up |
300 |
Supported models
The following table shows the FortiSwitch models that support FortiLink mode.
FortiGate and FortiWifi Models |
FortiSwitch Models |
---|---|
FortiOS 5.6 GA and later |
For FortiSwitch D-series models, FortiSwitchOS 3.6.4 GA or later is required for all
managed switches. |
New models (NPI releases) might not support FortiLink. Contact Customer Service & Support to check support for FortiLink. |
Support of FortiLink features
The following table lists the FortiSwitch models supported by FortiLink features.
FortiLink Features | FortiSwitch Models |
---|---|
Centralized VLAN Configuration |
D-series, E-series |
Switch POE Control |
D-series, E-series |
Link Aggregation Configuration |
D-series, E-series |
Spanning Tree Protocol (STP) |
D-series, E-series |
LLDP/MED |
D-series, E-series |
IGMP Snooping |
Not supported on 112D-POE, 1xxE-Series |
802.1x Authentication (Port-based, MAC-based, MAB) |
D-series, E-series |
Syslog Collection |
D-series, E-series |
DHCP Snooping |
Not supported on 1xxE-Series |
Device Detection |
D-series, E-series |
Support FortiLink FortiGate in HA Cluster |
D-series, E-series |
LAG support for FortiLink Connection |
D-series, E-series |
Active-Active Split MLAG from FortiGate to FortiSwitch units for Advanced Redundancy |
Not supported on FS-1xx Series |
sFlow |
Not supported on 1xxE-Series |
Dynamic ARP Inspection (DAI) |
Not supported on 1xxE-Series |
Port Mirroring |
D-series, E-series |
RADIUS Accounting Support |
Not supported on 1xxE-Series |
Centralized Configuration |
D-series, E-series |
Access VLAN |
Not supported on 1xxE-Series, 112D-POE |
STP BDPU Guard, Root Guard, Edge Port |
D-series, E-series |
Loop Guard |
D-series, E-series |
Switch admin Password |
D-series, E-series |
Storm Control |
D-series, E-series |
802.1x-Authenticated Dynamic VLAN Assignment |
D-series, E-series |
Host Quarantine on Switch Port |
D-series, E-series |
QoS |
Not supported on 1xxE-Series, 112D-POE |
Centralized Firmware Management |
D-series, E-series |
Before you begin
Before you configure the managed FortiSwitch unit, the following assumptions have been made in the writing of this manual:
- You have completed the initial configuration of the FortiSwitch unit, as outlined in the QuickStart Guide for your FortiSwitch model, and you have administrative access to the FortiSwitch GUI and CLI.
- You have installed a FortiGate unit on your network and have administrative access to the FortiGate GUI and CLI.