Tag Archives: fortigate npu

FortiGate-1500DT fast path architecture

FortiGate1500DT fast path architecture

The FortiGate-1500DT features two NP6 processors both connected to an integrated switch fabric. The FortiGate-1500DT has the same hardware configuration as the FortiGate-1500D, but with the addition of newer CPUs and DPDK technology that improves IPS performance.

The FortiGate-1500DT includes the following interfaces and NP6 processors:

  • Eight SFP 1Gb interfaces (port1-port8), eight RJ-45 Ethernet ports (port17-24) and four SFP+ 10Gb interfaces (port33-port36) share connections to the first NP6 processor.
  • Eight SFP 1Gb interfaces (port9-port16), eight RJ-45 Ethernet ports (port25-32) and four SFP+ 10Gb interfaces (port37-port40) share connections to the second NP6 processor.

 

 

Integrated Switch Fabric

FortiASIC NP6

FortiASIC NP6

 

 

 

 

 

 

 

Sys

System Bus

CP8

CPU

CP8

You can use the following get command to display the FortiGate-1500DT NP6 configuration. The command output shows two NP6s named NP6_0 and NP6_1. The output also shows the interfaces (ports) connected to each NP6. You can also use the diagnose npu np6 port-list command to display this information.

get hardware npu np6 port-list

Chip   XAUI Ports   Max   Cross-chip

Speed offloading

—— —- ——- —– ———- np6_0  0    port1   1G    Yes

0    port5   1G    Yes

0    port17  1G    Yes

0    port21  1G    Yes

0    port33  10G   Yes

1    port2   1G    Yes

1    port6   1G    Yes

1    port18  1G    Yes

1    port22  1G    Yes

1    port34  10G   Yes

2    port3   1G    Yes

2    port7   1G    Yes

2    port19  1G    Yes

2    port23  1G    Yes

2    port35  10G   Yes

3    port4   1G    Yes

3    port8   1G    Yes

3    port20  1G    Yes

3    port24  1G    Yes

3    port36  10G   Yes

—— —- ——- —– ———- np6_1  0    port9   1G    Yes

0    port13  1G    Yes

0    port25  1G    Yes

0    port29  1G    Yes

0    port37  10G   Yes

1    port10  1G    Yes

1    port14  1G    Yes

1    port26  1G    Yes

1    port30  1G    Yes

1    port38  10G   Yes

2    port11  1G    Yes

2    port15  1G    Yes

2    port27  1G    Yes

2    port31  1G    Yes

2    port39  10G   Yes

3    port12  1G    Yes

3    port16  1G    Yes

3    port28  1G    Yes

3    port32  1G    Yes

3    port40  10G   Yes

—— —- ——- —– ———-

FortiGate-1500D fast path architecture

FortiGate1500D fast path architecture

The FortiGate-1500D features two NP6 processors both connected to an integrated switch fabric.

  • Eight SFP 1Gb interfaces (port1-port8), eight RJ-45 Ethernet ports (port17-24) and four SFP+ 10Gb interfaces (port33-port36) share connections to the first NP6 processor.
  • Eight SFP 1Gb interfaces (port9-port16), eight RJ-45 Ethernet ports (port25-32) and four SFP+ 10Gb interfaces (port37-port40) share connections to the second NP6 processor.

FortiGate 1500D

CONSOLE

MGMT 1

       
     
       
     

 

1                        3                        5                        7

       
   
       
   

 

9                       11

13                      15                                   17                      19

21                      23                                   25                      27

29                      31

10G SFP+

33                      35                      37                      39

 

STATUS ALARM HA

POWER

 

USB MGMT

USB

MGMT 2

2                        4                        6                        8

10                      12

14                      16                                   18                      20

22                      24                                   26                      28

30                      32

34                      36                      38                      40

 

 

 

 

Integrated Switch Fabric

 

 

 

 

FortiASIC NP6

FortiASIC NP6

 

 

 

 

 

 

 

 

 

 

Sys

System Bus

 

 

 

 

 

CP8

CPU

CP8

 

 

 

 

 

You can use the following get command to display the FortiGate-1500D NP6 configuration. The command output shows two NP6s named NP6_0 and NP6_1. The output also shows the interfaces (ports) connected to each NP6. You can also use the diagnose npu np6 port-list command to display this information.

 

get hardware npu np6 port-list

Chip   XAUI Ports            Max   Cross-chip

Speed offloading

—— —- ——-          —– ———- np6_0  0    port1            1G    Yes

0    port5            1G    Yes

0    port17           1G    Yes

0    port21           1G    Yes

0    port33           10G   Yes

1    port2            1G    Yes

1    port6            1G    Yes

1    port18           1G    Yes

1    port22           1G    Yes

 

 

 

 

1    port34           10G   Yes

2    port3            1G    Yes

2    port7            1G    Yes

2    port19           1G    Yes

2    port23           1G    Yes

2    port35           10G   Yes

3    port4            1G    Yes

3    port8            1G    Yes

3    port20           1G    Yes

3    port24           1G    Yes

3    port36           10G   Yes

—— —- ——-          —– ———- np6_1  0    port9            1G    Yes

0    port13           1G    Yes

0    port25           1G    Yes

0    port29           1G    Yes

0    port37           10G   Yes

1    port10           1G    Yes

1    port14           1G    Yes

1    port26           1G    Yes

1    port30           1G    Yes

1    port38           10G   Yes

2    port11           1G    Yes

2    port15           1G    Yes

2    port27           1G    Yes

2    port31           1G    Yes

2    port39           10G   Yes

3    port12           1G    Yes

3    port16           1G    Yes

3    port28           1G    Yes

3    port32           1G    Yes

3    port40           10G   Yes

—— —- ——-          —– ———-

FortiGate-1200D fast path architecture

FortiGate-1200D fast path architecture

The FortiGate-1200D features two NP6 processors both connected to an integrated switch fabric.
Eight SFP 1Gb interfaces (port1-port8), eight RJ-45 Ethernet ports (port17-24) and two SFP+ 10Gb interfaces
(port33 and port34) share connections to the first NP6 processor.
Eight SFP 1Gb interfaces (port9-port16), eight RJ-45 Ethernet ports (port25-32) and two SFP+ 10Gb interfaces
(port35-port36) share connections to the second NP6 processor.

CONSOLE

MGMT 1

1 3 5 7

9 11 13 15

17 19

10G SFP+
21 23 25 27 29 31 33 35
STATUS ALARM HA
POWER
USB MGMT USB

MGMT 2

2 4 6 8

10 12 14 16

18 20

22 24

26 28 30 32

34 36

Integrated Switch Fabric

FortiASIC NP6

FortiASIC NP6

Sy tem Bus

CP8

CPU

CP8

You can use the following get command to display the FortiGate-1200D NP6 configuration. The command output shows two NP6s named NP6_0 and NP6_1. The output also shows the interfaces (ports) connected to each NP6. You can also use the diagnose npu np6 port-list command to display this information.

get hardware npu np6 port-list
Chip XAUI Ports Max Cross-chip
Speed offloading
—— —- ——- —– ———- np6_0 0 port33 10G Yes
1 port34 10G Yes
2 port1 1G Yes
2 port3 1G Yes
2 port5 1G Yes
2 port7 1G Yes
2 port17 1G Yes
2 port19 1G Yes
2 port21 1G Yes
2 port23 1G Yes
3 port2 1G Yes
3 port4 1G Yes
3 port6 1G Yes
3 port8 1G Yes
3 port18 1G Yes
3 port20 1G Yes
3 port22 1G Yes
3 port24 1G Yes
—— —- ——- —– ———- np6_1 0 port35 10G Yes
1 port36 10G Yes
2 port9 1G Yes
2 port11 1G Yes
2 port13 1G Yes
2 port15 1G Yes
2 port25 1G Yes
2 port27 1G Yes
2 port29 1G Yes
2 port31 1G Yes
3 port10 1G Yes
3 port12 1G Yes
3 port14 1G Yes
3 port16 1G Yes
3 port26 1G Yes
3 port28 1G Yes
3 port30 1G Yes
3 port32 1G Yes
—— —- ——- —– ———-