NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

yagyu's avatar
yagyu
Aspirant
Feb 23, 2021

GS716Tv3 Ha SETUP

Hi!

I want to set up HA with fortigate firewalls like:

                   switch   -     fw  -  switch   

internet --->    |               |         |              --> LAN

                   switch    -   fw    -  switch

 

and appropriate interconnections between the switches -> is this possible with the GS716TV3?

can I get some config examples?

 

Trying to eliminate the switches as single points of failure

 

thanks for looking

 
 
Model: GS716Tv3|ProSafe 16 ports Gigabit Smart switch

5 Replies

  • JohnC_V's avatar
    JohnC_V
    NETGEAR Employee Retired

    yagyu,

     

    Welcome to our community! :)

     

    May I know what do you want to achieve here? The firewall should be the one that is connected to the internet first before the switch. Do you have a multi-WAN setup?

     

    Regards,

     

    John

    NETGEAR Community Team

  • schumaku's avatar
    schumaku
    Guru - Experienced User

    yagyu wrote:

    I want to set up HA with fortigate firewalls like:

                       switch   -     fw  -  switch   

    internet --->    |               |         |              --> LAN

                       switch    -   fw    -  switch

    Yes, with Internet connections providing plain IP on the WAN connection (no PPTP, no PPPoE, ...), and permitting you don't expect e.g some L3 features like routing or VRRP, this can be configured with any switch.

     

    General advise: Consult with your firewall vendor for HA/failover/cluster configurtion switch requirements.

     

    JohnC_V no Multi-WAN and so on required for such a HA set-up. HA capable firewalls from Fortigate, Sonicwall, or ZyXEL (this isn't consumer ****) are supporting virtual MAC addresses. FMI:HA Cluster virtual MAC addresses 

    • schumaku's avatar
      schumaku
      Guru - Experienced User

      Curious how you intend to connect what akes up the "Internet" at your site - typically a device with just one port - should be connected in a full HA set-up.

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More