Skip to main content
heyyo
Explorer III
September 9, 2024
Question

Loopback Interface in SDWAN Zone

  • September 9, 2024
  • 1 reply
  • 1970 views

Hi Team,

 

I am on the process of deploying SDWAN in existing network, and wanting to add a loopback interface while trying to create an sdwan member.

 

 

Is my understanding correct that the loopback interface type is not supported before FortiOS 7.4.0?

I am only seeing a link related to SDWAN and Loopback as below:

Defining a preferred source IP for local-out egress interfaces on SD-WAN members NEW | FortiGate / FortiOS 7.4.0 | Fortinet Document Library

 

We are currently using MPLS network in our WAN, so we prefer to use loopback interface.

Also, please let me know if you have any other suggestions for this to work.

 

Thanks!

 

 

1 reply

Hatibi
Staff & Editor
Staff & Editor
September 9, 2024

Hello @heyyo ,

 

checking the docs there is no change in supporting Loopback Interfaces in FGT 7.4.0

https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/853005/loopback-interface

 

Typically, a loopback interface can be used with management access, BGP peering, PIM rendezvous points, and SD-WAN.

 

You might need to take a look at the Release notes for 7.4.0 in case you have FortiGate 6000 and 7000 platforms:

https://docs.fortinet.com/document/fortigate/7.4.0/fortios-release-notes/236526/known-issues

 

907695

The FortiGate 6000 and 7000 platforms do not support IPsec VPN over a loopback interface or an NPU inter-VDOM link interface.

 

Other than that you should be ok in using Looback interfaces for sdwan deplyoments.

 

Regards

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.