Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Agreed with you on OSPF requirement in that case.In fact, my diagram said we need separated VPC for each Firewall, not 4 four interfaces in single VPC through. And we puting the same side-A, side-B and secondary IP, encap, MTU on both VPC (path) when...
As my understanding, your logical topology may look like attached image:If you WANT TO use the same physical interfaces/same vPC, so yes, you need to static binding the corresponding VLAN - that mapping with Server/LB/Storage subnet - in EPG that Ser...
We not config IP for VPC, we config IP for the leaves. When config L3Out use SVI, we config thing like side A, side B that in fact the leaf-1 and leaf-2 with primary and secondary IP. In-case using OSPF, I don't think we need secondary IP. Leaves wil...
Still I assume that you running Active/Standby pair of Fortigate, let's me know if you running cluster Active/Active.
If the firewall running at Ative/Standby mode --> My recommend is: Do not put 1/45 and 1/46 into single port-channel. Let's put Leaf...
Hi @titusroz03,
Please correct me if my assumption not correct in your environment.
Does the cluster firewall running in Active/Standby or Active/Active? My assumption is that Active/Standby pair
If that Active/Standby pair of Firewall so the followi...