Flap Guard

Starting with FortiOS 7.2 this can be configured in the CLI. Before FortiGate 7.2, it can only be configured on the switches.

Can you order the switch to keep the flapguard status of all ports also after rebooting a switch.

This is not supported on all switch models!

config switch global
  set flapguard-retain-trigger
end

The Flap Guard is a per port setting:

Setting
Task
Default

flapguard

Enable/disable flap guard.

Disabled

flap-rate

Number of stage change events needed within flap-duration.

5

flap-duration

Period over which flap events are calculated (seconds).

30

flap-timeout

Flap guard disabling protection (min).

0

config switch-controller managed-switch
   edit "S448EFTF0000000"
      config ports
        edit "port1"
           set flapguard enable
           set flap-rate 3
           set flap-duration 120
    next
end

Show flapguard status:

Log Entry:

To reset the port use following command:

Last updated

Was this helpful?