Skip to main content
denis_profatylo
New Member
March 29, 2019
Question

PBR for locally generated traffic

  • March 29, 2019
  • 0 replies
  • 2285 views

Hello. I've need to dirrect traffic generated in fortigate (i.e. local traffic) to certain next-hop. On current i have 0.0.0.0/0 via tun0 for users, and i want dirrect locally generated traffic from fortigfate to nex hop tun2 for example.  I try following policy action: 

set input-device wan1

set dst 0.0.0.0/0

 set gateway 1.1.1.1 (example)

set outgoing-interface tun2

set status enable

But this action has affect for users behind fortigate. I wondered, why this acction has affect for transit traffic for fortigate, but not affect for local traffic for fortigate?  How i cat dirrect  local generated traffic to a certain interface? Thanks.  

 

  

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!