Redundant internet/S2S VPN - need some assistance
Greetings. Here is my situation, and I would like some suggestions.
We have 2 branch offices.
Branch office 1 has a FortiGate 100F, and 2 internet connections, different ISP's (WAN1 and WAN2 respectively). Branch office 2 also has a FortiGate 100F, but only ONE internet connection (WAN1).
I would like to accomplish the following:
1. Branch 1 failover internet connection - when WAN1 goes down, traffic is pushed over to WAN2. When WAN1 is restored, traffic jumps back over to WAN1. Essentially make WAN2 a backup connection...only activated if WAN1 fails.
2. Site-to-site VPN connection between the 2 sites, but with redundancy. So, if 1 of the 2 internet connections goes down at branch office 1, the site-to-site VPN will not be disrupted.
What is the best way to accomplish this? SD-WAN..priorities....CLI magic?
I'd appreciate some assistance!
Thank you for your time!
