FortiSwitch-7.4.2-Feature-Matrix
FortiSwitch-7.4.2-Feature-Matrix
The following table lists the FortiSwitch features in Release 7.4.2 that are supported on each series of FortiSwitch models. All features are available in Release 7.4.2, unless otherwise stated. Features marked with
are supported by FortiSwitch units in standalone mode; features marked with are supported in both standalone and in managed mode. Security Fabric features are available exclusively in managed mode when
supported by the FortiOS version.
Feature GUI FSR-112D- FSR-124D FSR-424F- 1xxE, 1xxF 200 Series 4xxE 500 Series 6xxF 1024D, 1024E, 2048F 3032E
Supported POE POE 1048E, T1024E
Centralized configuration
Centralized firmware
management
Automated detection and
recommendations
Syslog collection —
Device detection
Support of matching
FortiClient EMS tags in NAC
policies
Support of matching IoT/OT
vulnerabilities in NAC
policies
Feature GUI FSR-112D- FSR-124D FSR-424F- 1xxE, 1xxF 200 Series 4xxE 500 Series 6xxF 1024D, 1024E, 2048F 3032E
Supported POE POE 1048E, T1024E
FortiSwitch Manager
configuration
Auto topology —
Feature GUI FSR-112D- FSR-124D FSR-424F- 1xxE, 1xxF 200 Series 4xxE 500 Series 6xxF 1024D, 1024E, 2048F 3032E
Supported POE POE 1048E, T1024E
open-auth mode
MAC move — — —
802.1X/MAB priority —
sFlow (IPv4)
(124F, 148E,
148F)
Flow export (IPv4) —
(124F, 148F)
ACL (IPv4) (See note 16.)
Flap guard —
RMON group 1 —
Reliable syslog —
Packet capture —
(124F, 148E,
148F)
MACsec: PSK mode (See note 6.) — — — — — — — — —
(1024E,
T1024E)
MACsec: Dynamic-CAK mode — — — — — — — — —
(See note 6.) (1024E,
T1024E)
Feature GUI FSR-112D- FSR-124D FSR-424F- 1xxE, 1xxF 200 Series 4xxE 500 Series 6xxF 1024D, 1024E, 2048F 3032E
Supported POE POE 1048E, T1024E
Layer 2
IPv6 RA guard — —
IGMP snooping
IGMP proxy
IGMP querier —
MLD snooping — — — — — — —
MLD proxy — — — — — — —
MLD querier — — — — — — —
LLDP transmit —
LLDP-MED —
set mac-violation-timer —
Sticky MAC
'forced-untagged' or 'force- —
tagged' setting on switch
interfaces
Private VLANs — — —
MAC/IP/protocol-based
VLAN assignment
Virtual wire — — —
Loop guard
Flow control —
Layer 3
VRF (IPv4/IPv6) — — — — — —
(IPv4)
OSPF (IPv4/IPv6) — — —
RIP (IPv4/IPv6) — — —
VRRP (IPv4/IPv6) — — —
(IPv4)
BGP (IPv4/IPv6) — — — — —
IS-IS (IPv4/IPv6) — — —
PIM (IPv4) — — — — — —
Layer-3 (IPv4) routing in MCLAG — — — VRRP and — VRRP and VRRP and —
static static static
High-Availability Seamless — — — — — — — — — — —
Redundancy (HSR) (See note 20.)
Parallel Redundancy Protocol — — — — — — — — — — —
(PRP) (See note 20.)
MRP — — — — — — — — — —
Quality of Service
Tail-drop policy — —
ECN (IPv4/IPv6) — — — — —
T1024E)
Alias commands —
Automation stitches —
Wake-on-LAN packets —
Notes
1. PoE features are applicable only to the model numbers with a POE or FPOE suffix.
2. The 24-port LAG is applicable to FS-524D, FS-524-FPOE, FS-1024D, and FS-3032D models. The 48-port LAG is applicable to FS-548D, FS-548-FPOE, and FS-1048D models.
3. The per-VLAN MAC learning limit is not supported on the FS-108E, FS-108E-POE, FS-108E-FPOE, FS-108F, FS-108F-POE, FS-108F-FPOE, FS-124E, FS-124E-POE, FS-124E-FPOE, FS-124F, FS-124F-
POE, FS-124F-FPOE, FS-448D, FS-448D-POE, FS-448D-FPOE, FS-248E-POE, FS-248E-FPOE, and FS-248D models. The per-trunk MAC learning limit is not supported on the FS-448D, FS-448D-POE, FS-
448D-FPOE, FS-248E-POE, FS-248E-FPOE, and FS-248D models.
4. Supported only in 100G mode (clause 91).
5. On the FS-3032E, you can split one port at the full base speed, split one port into four sub-ports of 25-Gbps each (100G QSFP only), or split one port into four sub-ports of 10-Gbps each (40G or 100G QSFP).
6. Supported on the 10G ports on the FS-5xxD models, the 10G and 100G ports on the FS-1024E model, and the 100G ports on the FS-T1024E model.
7. The maximum number of access VLANs on the FS-1xxE, FS-108F, FS-108F-POE, and FS-108F-FPOE models is 16; the maximum number of access VLANs on the FS-148F models is 32.
8. PTP is not supported on the FS-248E, FS-248E-POE, FS-248E-FPOE, FS-448D, FS-448D-POE, and FS-448D-FPOE models. The FSR-424F-POE model supports PTP transparent clock with IPv4 addresses
only.
9. In managed mode, static routing is supported exclusively for system management and connectivity to Security Fabric connectors.
10. This feature is not supported by the FS-108E, FS-108E-POE, FS-108E-FPOE, FS-108F, FS-108F-POE, FS-108F-FPOE, FS-124E, FS-124F, and FS-224E models.
11. The FS-148F, FS-148F-POE, and FS-148F-FPOE models report the drop rate as 0 or +VE for a positive rate.
12. There are some limitations on LAN segments on the FSR-112D-POE, FS-108E, FS-108E-POE, FS-108E-FPOE, FS-108F, FS-108F-POE, FS-108F-FPOE, FS-124E, FS-124E-POE, FS-124E-FPOE, FS-148E,
and FS-148E-POE models. See the FortiLink Guide (FortiOS 7.4.2) for details.
13. Partial VLAN mapping is supported by the FS-124F, FS-124F-POE, FS-124F-FPOE, FS-148F, FS-148F-POE, FS-148F-FPOE, and FSR-112D-POE models. See the FortiSwitchOS Administration Guide 7.2.0
for details.
14. When the FortiSwitch unit is using poe-port-power perpetual-fast, the following BIOS versions are required: 4000014 or higher for FS-108E-POE, FS-108E-FPOE, FS-124E-POE, and FS-124E-FPOE;
4000011 or higher for FS-148E-POE; 4000006 or higher for FS-108F-FPOE; and 4000007 or higher for FS-108F-POE.
15. The FS-1xx models allow you to enable DHCP snooping on a maximum of 25 VLANs.
16. Only the ACL ingress policy is supported in FortiLink mode. The following FortiSwitch models do not support ACL in FortiLink mode: FS-108E, FS-108E-POE, FS-108E-FPOE, FS-108F, FS-108F-POE, FS-
108F-FPOE, FS-124E, FS-124E-POE, FS-124E-FPOE, FS-124F, FS-124F-POE, FS-124F-FPOE, FS-148E, FS-148E-POE, FS-148F, FS-148F-POE, FS-148F-FPOE, and FSR-112D-POE.
17. OS image signature verification is not supported on the FS-224D-FPOE and FS-248D models.
18. The FS-1xxE and FS-1xxF models support a single QoS map. If there is more than one QoS map, the first configured map is used.
20. HSR and PRP can also be used with FortiLink. For more details, see the FortiLink Guide.
Copyright© 2023 Fortinet, Inc. All rights reserved. Fortinet®, FortiGate®, FortiCare® and FortiGuard®, and certain other marks are registered trademarks of Fortinet, Inc., in the U.S. and other jurisdictions, and other Fortinet names herein may also be registered and/or common law trademarks of
Fortinet. All other product or company names may be trademarks of their respective owners. Performance and other metrics contained herein were attained in internal lab tests under ideal conditions, and actual performance and other results may vary. Network variables, different network
environments and other conditions may affect performance results. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except to the extent Fortinet enters a binding written contract, signed by Fortinet’s General
Counsel, with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and, in such event, only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet. For
absolute clarity, any such warranty will be limited to performance in the same ideal conditions as in Fortinet’s internal lab tests. In no event does Fortinet make any commitment related to future deliverables, features, or development, and circumstances may change such that any forward-looking
statements herein are not accurate. Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication without notice, and the most current version of the
publication shall be applicable.