beautypg.com

Fabric gigabit switching between chassis – Fortinet 5003 User Manual

Page 50

background image

FortiSwitch-5003A and 5003 Fabric and Base Backplane Communications Guide

50

01-30000-85717-20081205

Fabric channel connections between FortiSwitch-5003A boards

FortiGate-5050 fabric backplane communication

If the data traffic contains VLAN-tagged packets, you must add the VLAN tags to
the FortiSwitch-5003A interfaces that will handle the VLAN-tagged traffic. For
example, to allow VLAN tags 200 to 205 on slots 3, 4, and 5 from the
FortiSwitch-5003A CLI enter:

config switch fabric-channel interface

edit "slot-3"

set allowed-vlans 1,200-205

next
edit "slot-4"

set allowed-vlans 1,200-205

next
edit "slot-5"

set allowed-vlans 1,200-205

end

Fabric channel connections between FortiSwitch-5003A boards

When two FortiSwitch-5003A boards are installed in a single chassis their fabric
channels are connected together. This means there is a data connection between
fabric channel 1 and fabric channel 2. Unless you are going to use this connection
you should disable it.

If one or more of the FortiGate-5001A or 5005FA2 boards are operating in
transparent mode, the connection between the fabric channels can cause looping.
If you have one or more FortiGate-5001A or 5005FA2 boards operating in
transparent mode with two FortiSwitch-5003A boards in the same chassis you
must disable communication between the FortiSwitch-5003A boards.

The fabric channel connection between the FortiSwitch-5003A boards uses an
internal FortiSwitch-5003A interface called slot-2/1. To disable the fabric channel
connection between two FortiSwitch-5003A boards you should set the status of

slot-2/1 to down for one of the boards. Connect to the CLI of one of the
FortiSwitch-5003A boards and enter the following command:

config switch fabric-channel physical-port

edit slot-2/1

set status down

end

Fabric gigabit switching between chassis

You can use the FortiSwitch-5003A front panel fabric interfaces to provide
10-gigabit data communications between the fabric channels of any combination
of FortiGate-5050 and FortiGate-5140 chassis.

Note: Its not required, but in most cases you would connect the same fabric channels
together. That is you would connect fabric channel 1 on one chassis to fabric channel 1 on
another. Usually you would not connect fabric channel 1 on one chassis to fabric channel 2
on another chassis. Also, you would usually not connect a base channel from one chassis
to a fabric channel on another chassis. You should be careful of looping when connecting
chassis together if some of the FortiGate boards in the chassis are operating in transparent
mode.