IBM TechXchange Cloud User Group

 View Only

Fortigate Appliance in VPC (VSI) vs Classic (Baremetal)

  • 1.  Fortigate Appliance in VPC (VSI) vs Classic (Baremetal)

    Posted Mon January 22, 2024 07:30 AM

    Dear Experts,

    I am working on a solution and want to understand using Fortigate Appliance with ATP Bundle. I have worked on putting Fortigate in Classic on Baremetal and worked like a charm. Now for another customer ask is not to use classic and wants to put Fortigate in VPC VSI. I have tested this and got few challenges like:

    1. Cons in VPC - Fortigate HA both appliances has to be in same subnet means Zone is single point of failure.
    2. Cons in VPC - It depends on VPC routing table entry, which do not have more features as compare to BGP routing.
    3. Pros in VPC - Its cheaper as compare to Classic Baremetal
    4. Cons in Classic - Its costly
    5. Cons in Classic - Monitoring is hard
    6. Pros in Classic - Easily manageble and monitoringable
    7. Pros in Classic - HA is very well possible

    Can anyone else help me with additional pros and cons of using Fortigate in VPC and Classic?



    ------------------------------
    Narender Singh
    ------------------------------