FortiAnalyzer connectivity on FortiGate inside VRF
Hi everyone,
currently dealing with the following scenario: we're sending logs from a remote FortiGate to a centrally-hosted FortiAnalyzer via S2S VPN. Source interface on the FortiGate for logging is set to a loopback interface (via "set source-ip" command) - this is working perfectly fine.
Now we would like to transfer that communication into a dedicated VRF on the remote FortiGate so routing and IP adressing for the management/logging tunnel is completely seperate from production routing. In order to reach that goal we have moved the tunnel interface and the loopback interface into its own VRF (7). As soon as we do that, logging to the FortiAnalyzer isn't working anymore. We also tried setting "interface-selection-method" and "interface" inside "config log fortianalyzer" config to no avail.
Has anyone got this to work by chance?
Best regards,
Max