Skip to main content
hazmi
New Member
April 21, 2020
Question

Quesiton: Leased Line Issues. Need Alternative.

  • April 21, 2020
  • 1 reply
  • 2214 views

Hi, I have this client in China using Fortigate 60D. they're issue now is that they have high bandwidth usage on wan2 (leased line to HQ) so means their HQ is giving internet to this branch. For wan1 is their ISP. The issue with their ISP is that they blocked google. But my client is using google based email so that's why they have to use wan2 to access google services.

 

My past engineer did using policy routing. primary is wan2, and secondary is wan1.

So right now, everything will go to wan2 even google websites using wan2.

The max bandwidth for their leased line(wan2) is only 10Mbps, so naturally if they have a lot of updates, will be high usage.

 

#Question, how do I let only google services or their servers to pass thru wan2, and other websites will be using wan1?

I understand it seems SD-WAN is the only way. But the problem then I have is that the leased line I need to disable the NAT.

 

Need help from all the professionals here.

 

Thanks.

Regards,

Hazmi

    1 reply

    James_G
    New Member
    April 21, 2020

    Policy based routing to wildcard DNS names (*.gmail.com, *.google.com) get routed over your leased line. Then other traffic routed over default route, to ISP.

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!