Multicast forwarding and FortiGate units

Cisco_3750_1 router configuration

 

version 12.2

!

hostname Cisco-3750-1

!

switch 1 provision ws-c3750-24ts ip subnet-zero

ip routing

!

ip multicast-routing distributed

!

spanning-tree mode pvst

no spanning-tree optimize bpdu transmission spanning-tree extend system-id

!

interface Loopback0

ip address 169.254.100.1 255.255.255.255

!

interface FastEthernet1/0/23 switchport access vlan 182 switchport mode access

!

interface FastEthernet1/0/24 switchport access vlan 172 switchport mode access

!

interface Vlan172

ip address 10.31.138.1 255.255.255.0 ip pim sparse-mode

ip igmp query-interval 125 ip mroute-cache distributed

!

interface Vlan182

ip address 169.254.82.250 255.255.255.0 ip pim sparse-mode

ip mroute-cache distributed

!

ip classless

ip route 0.0.0.0 0.0.0.0 169.254.82.1 ip http server

ip pim rp-address 169.254.100.1 Source-RP

!

ip access-list standard Source-RP

permit 233.254.200.0 0.0.0.255

 

Cisco_3750_2 router configuration

 

version 12.2

!

hostname Cisco-3750-2

!

switch 1 provision ws-c3750-24ts ip subnet-zero

ip routing

!

ip multicast-routing distributed

!

spanning-tree mode pvst

no spanning-tree optimize bpdu transmission spanning-tree extend system-id

!

interface FastEthernet1/0/23 switchport access vlan 138 switchport mode access

!

interface FastEthernet1/0/24 switchport access vlan 182 witchport mode access

!

interface Vlan138

ip address 10.31.138.250 255.255.255.0 ip pim sparse-mode

ip mroute-cache distributed

!

interface Vlan182

ip address 169.254.82.1 255.255.255.0 ip pim sparse-mode

ip mroute-cache distributed

!

ip classless

ip route 0.0.0.0 0.0.0.0 10.31.138.253

ip route 169.254.100.1 255.255.255.255 169.254.82.250 ip http server

ip pim rp-address 169.254.100.1 Source-RP

!

!

ip access-list standard Source-RP

permit 233.254.200.0 0.0.0.255

This entry was posted in Fortinet GURU, FortiOS 5.4 Handbook on by .

About Mike

Michael Pruett, CISSP has a wide range of cyber-security and network engineering expertise. The plethora of vendors that resell hardware but have zero engineering knowledge resulting in the wrong hardware or configuration being deployed is a major pet peeve of Michael's. This site was started in an effort to spread information while providing the option of quality consulting services at a much lower price than Fortinet Professional Services. Owns PacketLlama.Com (Fortinet Hardware Sales) and Office Of The CISO, LLC (Cybersecurity consulting firm).

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.