QUOTE(kertaznet @ Oct 9 2019, 02:47 PM)
That's it for the switch?
Means I need to configure the port on Fortigate to sent the VLAN over to the switch?
Now the fortigate port 7 is configure for Guest Access. So let say I want to use port 8 on fortigate, I need to config the port the same as port 7 in order to have VLAN 2 working on the swith?
Apologize, I'm damn confuse also on my question hahaha.
Does basic "Guest Isolation" setting on the UniFi switch good enough?
yes... guest isolation on unifi switch is good.. but fortigate even better since it is proper firewall...
if fortigate has been configured vlan, it should be fine, since unifi switch is trunking by default.
QUOTE
Now the fortigate port 7 is configure for Guest Access. So let say I want to use port 8 on fortigate, I need to config the port the same as port 7 in order to have VLAN 2 working on the swith?
yes...
but if needed, let it give all vlan, then you do routing on switch and port isolatation.. should be fine... since anything after fortigate will be back to fortigate.