Skip to main content
IanW
New Member
November 16, 2017
Question

Load balancing inbound connections across multiple WANs with HA firewalls

  • November 16, 2017
  • 4 replies
  • 6731 views

Hi,

So the setup is two Fortigate Firewalls in HA and I have two Internet suppliers. I want to be able to load balance the two WAN connections from the HA appliance but equally I want to load balance inbound connections to a single server via both links. (it is my intention to use an F5 GTM to do global load balancing between the to links inbound).

 

So not quite sure if this can be done. Both WAN links will need to be active and each will have its own PA address space which will mean that the inbound server will need two NAT addresses and return packets will have to be forwarded via the link it came in.

 

My question is can it be done, has anyone done it before and are there any "gotchas" to be aware of and any issues with specific OS versions?

 

Thanks.

    4 replies

    packetpusher
    New Member
    November 17, 2017

    So you want the F5 to do a global load balancing at the edge and the fortigate HA to load balance with the directly connected web server. Do you have a topology diagram to share with us?

    IanW
    IanWAuthor
    New Member
    November 24, 2017

    Staff
    November 24, 2017

    Ian,

    Please try to paste your image again.

    Regards,

    Admin

     

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.