FRUP configuration example
This example includes the following:
• Two FortiGate-100D units (FGT-A and FGT-B)
• HA1 and HA2 for redundant HA heartbeat connectivity between FGT-1 and FGT-2
• Dual gateways (router1 and router2):
• FGT-A has an active connection from WAN1 to router-1 and a backup connection from WAN2 to router-2
• FGT-B has an active connection from WAN2 to router-2 and a backup connection from WAN1 to router-1
• Dual connections to the internal network and an internal server:
• FGT-A has an active connection to an internal server using switch port 16 and a backup connection to the internal network using switch port 14
• FGT-B has a backup connection to an internal server using switch port 16 and an active connection to the internal network using switch port 14
• FortiGate interfaces use virtual IP addresses and pseudo-MAC physical addresses, all devices continue to send to the same IP/Mac and don't need to re-learn after a failover
• Both FortiGate units will handle and process traffic
• Backup links are normally administratively down
• Sessions and the FortiGate configuration are synchronized between the cluster units