Fortinet white logo
Fortinet white logo

New Features

FortiSwitch GUI enhancements 6.4.1

FortiSwitch GUI enhancements 6.4.1

FortiManager includes the following GUI enhancements for FortiSwitch Manager:

  • NAC policy
  • ports table
  • connected device
  • transceiver information

These features are only available in per-device FortiSwitch Management mode.

To enable FortiSwitch per-device management:
  1. Go to System Settings > All ADOMs.
  2. Double-click the ADOM to open it for editing.
  3. Beside Central Management, clear the FortiSwitch checkbox, and click OK.

    Central management is disabled, and per-device management is enabled for FortiSwitch.

  4. Go to FortiSwitch Manager, and notice that Per-device Management is displayed in the top-right corner.

NAC Policy

NAC policies can be created or edited in FortiSwitch Profile > NAC Policies. Once the policies are created or editied, the changes can be installed to the FortiGate.

To edit NAC policies:
  1. Go to FortiSwitch Manager > FortiSwitch Profiles.
  2. In the tree menu, select a FortiGate.

    The VLANs tab is displayed.

  3. Click the NAC Policies tab.

    The NAC policies are displayed.

  4. Right-click the NAC policy and select Edit.

    The Edit NAC Policies pane opens.

  5. Edit your NAC policy, and click OK.

    The changes are saved to the FortiGate database.

NAC Settings in FortiLink Interface

You can edit NAC settings via the FortiLink interface.

To edit NAC settings via the FortiLink interface:
  1. Go to FortiSwitch Manager > FortiSwitch Profiles.
  2. In the tree menu, select a FortiGate.

    The VLANs tab is displayed.

  3. In FortiLink Interface pane, select a FortiLink and click Edit or right-click the FortiLink and select Edit.

    The Edit VLAN Definition pane opens.

    By default, NAC Settings option is enabled and Onboarding VLAN is set to onboarding. You may disable the NAC Settings or change the onboarding VLAN.

  4. In the Edit VLAN Definition pane, set Use NAC policies on FortiSwitch Ports to Specify.
  5. Select Click here to select and from the Select Entries list, select the FortiSwitch.

    Click OK.

    If you want to specify NAC policies on all FortiSwitches, set Use NAC policies on FortiSwitch Ports to All.

  6. In the FortiSwitch option below Use NAC policies on FortiSwitch Ports, select Specify.
  7. Select Click here to select and from the Select Entries list, select the ports to specify the NAC policy on. Click OK.

    Click OK to save your changes.

  8. Go to Managed Switches, and double-click the previously specified FortiSwitch.

    The FortiSwitch Ports pane opens.

    NAC policy is enforced on the selected ports.

FortiSwitch Ports table GUI enhancements
  1. Go to FortiSwitch Manager > Managed Switches.
  2. In the tree menu, select a FortiGate.

    The list of managed switches is displayed in the content pane.

  3. Double-click a switch.

    The FortiSwitch Ports pane opens.

    The Access mode column is added to show the port access mode: NAC or Normal.

    The Enabled Features column is added to show if Edge Port or Spanning Tree Protocol is enabled.

    The Device Information column is added to show the connected device information.

    Hover over the listed device to see detailed information.

    The Transceiver column is added to display transceiver information. If no transceiver is connected, then the Transceiver column shows Unknown.

FortiSwitch CLI Configuration
  1. Go to FortiSwitch Manager > FortiSwitch Profiles.
  2. In the tree menu, select a FortiGate.

    The VLANs tab is displayed.

  3. Click the CLI Configurations tab.

    The CLI Configurations tab opens.

    The CLI Configurations tab is added to edit and display all the settings for the switch-controller.

FortiSwitch GUI enhancements 6.4.1

FortiSwitch GUI enhancements 6.4.1

FortiManager includes the following GUI enhancements for FortiSwitch Manager:

  • NAC policy
  • ports table
  • connected device
  • transceiver information

These features are only available in per-device FortiSwitch Management mode.

To enable FortiSwitch per-device management:
  1. Go to System Settings > All ADOMs.
  2. Double-click the ADOM to open it for editing.
  3. Beside Central Management, clear the FortiSwitch checkbox, and click OK.

    Central management is disabled, and per-device management is enabled for FortiSwitch.

  4. Go to FortiSwitch Manager, and notice that Per-device Management is displayed in the top-right corner.

NAC Policy

NAC policies can be created or edited in FortiSwitch Profile > NAC Policies. Once the policies are created or editied, the changes can be installed to the FortiGate.

To edit NAC policies:
  1. Go to FortiSwitch Manager > FortiSwitch Profiles.
  2. In the tree menu, select a FortiGate.

    The VLANs tab is displayed.

  3. Click the NAC Policies tab.

    The NAC policies are displayed.

  4. Right-click the NAC policy and select Edit.

    The Edit NAC Policies pane opens.

  5. Edit your NAC policy, and click OK.

    The changes are saved to the FortiGate database.

NAC Settings in FortiLink Interface

You can edit NAC settings via the FortiLink interface.

To edit NAC settings via the FortiLink interface:
  1. Go to FortiSwitch Manager > FortiSwitch Profiles.
  2. In the tree menu, select a FortiGate.

    The VLANs tab is displayed.

  3. In FortiLink Interface pane, select a FortiLink and click Edit or right-click the FortiLink and select Edit.

    The Edit VLAN Definition pane opens.

    By default, NAC Settings option is enabled and Onboarding VLAN is set to onboarding. You may disable the NAC Settings or change the onboarding VLAN.

  4. In the Edit VLAN Definition pane, set Use NAC policies on FortiSwitch Ports to Specify.
  5. Select Click here to select and from the Select Entries list, select the FortiSwitch.

    Click OK.

    If you want to specify NAC policies on all FortiSwitches, set Use NAC policies on FortiSwitch Ports to All.

  6. In the FortiSwitch option below Use NAC policies on FortiSwitch Ports, select Specify.
  7. Select Click here to select and from the Select Entries list, select the ports to specify the NAC policy on. Click OK.

    Click OK to save your changes.

  8. Go to Managed Switches, and double-click the previously specified FortiSwitch.

    The FortiSwitch Ports pane opens.

    NAC policy is enforced on the selected ports.

FortiSwitch Ports table GUI enhancements
  1. Go to FortiSwitch Manager > Managed Switches.
  2. In the tree menu, select a FortiGate.

    The list of managed switches is displayed in the content pane.

  3. Double-click a switch.

    The FortiSwitch Ports pane opens.

    The Access mode column is added to show the port access mode: NAC or Normal.

    The Enabled Features column is added to show if Edge Port or Spanning Tree Protocol is enabled.

    The Device Information column is added to show the connected device information.

    Hover over the listed device to see detailed information.

    The Transceiver column is added to display transceiver information. If no transceiver is connected, then the Transceiver column shows Unknown.

FortiSwitch CLI Configuration
  1. Go to FortiSwitch Manager > FortiSwitch Profiles.
  2. In the tree menu, select a FortiGate.

    The VLANs tab is displayed.

  3. Click the CLI Configurations tab.

    The CLI Configurations tab opens.

    The CLI Configurations tab is added to edit and display all the settings for the switch-controller.