Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

LAG configuration

Hello,

So I have a weird scenario and I need second opinion.

We have two firewalls Active Passive and two switched Active Active

The first switch was configured to connect to the primary firewall on a port F4 and this port has vlan on it,

The second switch was configured to connect to the secondary firewall same port. So however configured this setting was only thinking of a failover only for firewalls not switches. So in this scenario if the first switch fails the second will not rout traffic as it is conectted to the secondary passive firewall.

To solve this i have to create a LAG port for the two ports and connect the second switch two. However since the first port has vlans on it I cannot add it to the group, I have to remove the vlans and recreate them on the LAG.

What is the best practice in this scenario to avoid any downtime, misconfigurations, or recreating firewall rules?



Added TAGs
[edited by: Raphael Alganes at 11:48 PM (GMT -7) on 21 Jul 2024]