Hot!Managed FortiSwitches 3.6.7 Force untagged frames

Author
tanr
Platinum Member
  • Total Posts : 613
  • Scores: 20
  • Reward points: 0
  • Joined: 2016/05/09 17:09:43
  • Status: offline
2018/08/24 08:08:28 (permalink)
0

Managed FortiSwitches 3.6.7 Force untagged frames

Hi All,
 
I've got a couple FortiGates managing a few FortiSwitches now, and have some questions about edge ports.
  • With managed FortiSwitches it looks like there is no way to require untagged frames on an edge port (discard-mode all-tagged) unless I upgrade to 6.0.x and per the docs native vlan tagged frames are automatically accepted, which could possibly allow frames with two 802.1Q tags.
    I've changed the switch config directly through the switch CLI to set edge interfaces to have discard-mode all-tagged (it's none by default).  Is this going break something, or is it a valid solution?
  • Edge ports also still have lldp-profile default-auto-isl, which I don't want to allow. 
    Again, is changing this directly through switch CLI okay?Thanks for any pointers.
  • #1

    1 Reply Related Threads

      tanr
      Platinum Member
      • Total Posts : 613
      • Scores: 20
      • Reward points: 0
      • Joined: 2016/05/09 17:09:43
      • Status: offline
      Re: Managed FortiSwitches 3.6.7 Force untagged frames 2018/08/24 09:48:00 (permalink)
      0
      Discovered you can change this from the GUI if you add the lldp-profile to the displayed ports list.
       
      So remaining question is how to set discard-mode all-tagged for managed FortiSwitch interfaces.
      #2
      Jump to:
      © 2018 APG vNext Commercial Version 5.5