Skip to main content
Umesh
Explorer II
October 13, 2025
Question

Fortigate performance SLA abnormal behaviour with IPsec over SDWAN -

  • October 13, 2025
  • 2 replies
  • 369 views

Dear All,

 

I am experiencing issue with IPsec over SDWAN. the issue which I am facing are as flows:-

 

We have two sites which is configured with IPsec over SDWAN so that I can monitor remote site with using their local IP.

 

Site 2 Site IPsec tunnel are up and also configured set source ip (x.x.x.x) under config sys sdwan>config members  .

but still performance SLA is not coming up. I troubleshooted.

1. Routing (static routing)

2. Policy 

3.  phase 2 selector 

4. SDWAN rule

5. Performance SLA

6. Set source IP

 

even after all the troubleshooting performance SLA is not coming up.

 

Firmware version - 7.2.11

 

Need your prompt response & help to address this issue.

 

Thank you 

2 replies

rosatechnocrat
Explorer III
October 13, 2025

Which performance SLA you are using, is it AWS_Default or your own custom

Subscribe "ROSA Technocrat" on Youtube for Fortinet Videos and Troubleshooting https://www.youtube.com/@rosatechnocrat
rosatechnocrat
Explorer III
October 13, 2025

If using AWS_Default, Hope you are aware of the article published recently , disabling AWS_Probe

 

https://www.youtube.com/live/YeAVl55olss?si=vzubt79WdPcnt-pl

Subscribe "ROSA Technocrat" on Youtube for Fortinet Videos and Troubleshooting https://www.youtube.com/@rosatechnocrat
Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!