AWS Direct Connect config file for Fortinet Firewall

0

Hi,

We're setting up an AWS Direct Connect connection. We deployed the Virtual Interface, attached it to a Virtual Gateway with an attached VPC. The Virtual interface is already available but the status is down, which is as expected. Our next step is the configuration for the BGP peering of our local machine to the AWS Virtual Interface. We're having issues in the configuration of our local machine which is Fortigate Firewall since the configuration files that AWS can only provide is for Cisco, Juniper or Palo Alto. We tried using Juniper for the configuration since it has similarities with Fortinet. We followed the steps downloaded from the Virtual Interface sample configuration file but the Virtual Interface status is still down.

Are we missing something? Is the Fortinet Firewall not recommended as router for Direct Connect Virtual Interface?

Rye
質問済み 1年前1559ビュー
2回答
1

As long as your Fortinet device supports the prerequisites mentioned here it will be supported.

Note that the configuration file provided by AWS is example only it is impossible to cover and provide configurations for all the different vendors, different hardware and software versions so this guidance is best effort only.

So you can download a config file to use as a guide, but commands need to be 'translated' into Fortinet compatible ones.

General steps:

  • Disable auto-negotiation
  • Configure (sub)interface for IP address and 802.1Q trunking, using corresponding values as when VIF in the AWS console was created
  • Configure BGP to peer with AWS router accordingly

Example configs can also be found here.

I suggest reaching Fortinet support and AWS support for troubleshooting, as re:Post platform is for general guidance and not troubleshooting issues.

profile pictureAWS
エキスパート
回答済み 1年前
  • Thank you for this.

0

Yes, i know Fortinet is supported and recommended

Based on your description you probable need support only for config FortiGate as required by AWS.

回答済み 1年前

ログインしていません。 ログイン 回答を投稿する。

優れた回答とは、質問に明確に答え、建設的なフィードバックを提供し、質問者の専門分野におけるスキルの向上を促すものです。

質問に答えるためのガイドライン

関連するコンテンツ