![]() Traffic will only be offloaded if it enters and exits the FortiGate on interfaces connected to the same NP6lite.Īpproach: Understand your FortiGate NP architecture and design your network accordingly. NP6lite_1 is connected to ten 1GE RJ45 interfaces (wan1, wan2, port1-port8).NP6lite_0 is connected to six 1GE RJ-45 interfaces (port9-port14) and four 1GE SFP interfaces (port15-18).The NP6lites are connected to network interfaces as follows: I will make my example specific to FGT 200E which has NP6Lite, NP6lite works the same way as NP6 but is a lighter version PPPoE interfaces: handled by PPP software process and connections are terminated in virtual interfaces, that's why non-PPPoE interfaces might provide better throughput compared to PPPoE ones.Īll of these have interfaces are either logical/software interfaces or terminated in virtual interfaces which won't be offloaded to NPs.Īpproach: Use physical or VLAN interfaces that bind to fixed ports in order to ensure traffic is offloaded to NP.Software switches: virtual switch even though its interfaces act like hardware switch interfaces. ![]() Loopback interface: it's a logical/software interface with no physical dependency.The below interfaces do not support being offloaded to NPU: Have you wondered why connecting directly to a physical port on FortiGate helps in troubleshooting throughput issues sometimes? Not all type of interfaces support being offloaded to NPU.īy the end of this post, I'm hoping you will have an understanding on which interfaces and sessions are offloaded getting better throughput as a result. Network processors (NPs) can offload network traffic to specialized hardware that is optimized to provide high levels of network throughput, sessions that are offloaded to NPU benefit from higher throughput compared to traffic that is not offloaded. Most FortiGate models have specialized acceleration hardware SPUs, CPs, SPs and NPs, each one has its own functionality and benefits to FortiGate, our focus will be on NPs. Sharing dumps violates a reddit global rule and may result in a site-wide ban. Posting brain or answer dumps for Fortinet certifications is prohibited as they are copyrighted material. What you have already tried as part of your troubleshooting process.Version and type of software being impacted (i.e.Some examples of useful information are the following: Next, please provide us as much information about your problem as you possibly can. If you're having a problem with a Fortinet product, first, make sure you submit your request to Fortinet TAC if you have a valid support contract. Here you can ask for help, share tips and tricks, and discuss anything related to Fortinet and Fortinet Products. ![]() Fortinet is a global leader and innovator in Network Security.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |