LESSON 01: Managed Switch Flashcards
In this lesson, you will learn about FortiSwitch essentials, focusing on the managed switch mode. (49 cards)
What is FortiSwitch?
This is Fortinet’s ethernet switch which operates at layer 2 of the OSI model.
What OS does FortiSwitch run?
FortiSwitchOS
Fortiswitch OS is based on FortiOS Kernel
What interface is used to manage FortiSwitch on a FortiGate?
Fortilink Interface
What are the three (3) use cases for FortiSwitches?
- Secure Access
- Datacenter
- Rugged
What are the three (3) management modes for FortiSwitch?
- Standalone
- Managed Switch
- FortiLAN Cloud
When Fortiswitch is deployed in managed mode, what device acts as the controller?
The Fortigate
Key benefits of managing FortiSwitch devices using FortiGate
- Zero-Touch Provisioning
- Secure Configuration Management
- Centralized Provisioning and Maintenance
- Fortiswitch Stacking
What is zero-touch provisioning in FortiSwitch management?
Administrators only need to connect FortiSwitch to a FortiGate interface with FortiLink enabled. FortiGate then automatically discovers and provisions FortiSwitch.
If FortiManager is used, zero-touch provisioning can also be achieved by configuring the FortiGate settings on FortiManager.
How is secure configuration management handled in FortiSwitch?
All FortiSwitch management is done on the FortiGate GUI and CLI, or on FortiManager if used. Administrators do not need to log in to FortiSwitch.
This enhances security and simplifies management.
What does centralized provisioning and maintenance mean for FortiSwitch?
FortiSwitch becomes an extension of FortiGate, allowing configuration of firewall policies for FortiSwitch VLANs in the same way as FortiGate VLANs.
Authentication and authorization are also handled centrally on FortiGate or FortiManager.
What is a FortiSwitch stack?
FortiGate can manage multiple FortiSwitch devices stacked in different ways to offer scalability and redundancy.
What must be enabled on FortiGate to manage FortiSwitch stack?
Switch controller feature
This feature allows FortiGate to discover and manage connected FortiSwitch devices.
What must be checked for compatibility between FortiSwitch and FortiGate?
FortiSwitchOS version and FortiOS version
Compatibility can be verified using the compatibility matrix available on docs.fortinet.com.
Is the switch controller feature enabled by default on all FortiGate models?
No, it is not enabled by default on FortiGate VM models
Most other FortiGate models have this feature enabled by default.
How can the switch controller feature be enabled on FortiGate VM models?
By running specific CLI commands
These commands are provided on the relevant slide.
Where can you find the related switch controller settings after enabling the feature?
Under the WiFi & Switch Controller section in the GUI
If not visible, check the Feature Visibility page.
What should you do if the GUI settings for switch controller are not displayed?
Ensure the Switch Controller feature is enabled on the Feature Visibility page
This step is crucial for accessing the settings.
What is the default VLAN assigned for switch management traffic?
VLAN 4094
VLAN 4094 is configured as the native VLAN on various links.
What type of traffic is exchanged untagged on switches?
Switch management traffic
This traffic is assigned to VLAN 4094 by default.
What is VLAN 4094 configured as on the FortiLink trunk?
The native VLAN
It is also configured as the native VLAN on inter-switch links (ISLs) and inter-chassis links (ICLs).
What are ISLs and ICLs
Inter-switch links (ISLs) and inter-chassis links (ICLs)
VLAN 4094 is the native VLAN for both ISLs and ICLs.
True or False: VLAN 4094 is not used for inter-chassis links.
False
VLAN 4094 is used as the native VLAN for inter-chassis links (ICLs).
What is the factory default FortiLink interface named in FortiGate devices that support the switch controller feature?
fortilink
This interface is located in the root VDOM.
What type of interface is the default FortiLink interface?
link aggregation group (LAG) interface
No LAG members are assigned by default.