SD-WAN rule query
Hi Folks
I'd like to know if the following is possible. A setup for SD-WAN that supports a basic failover between two or more wan links. One link will always be 'preferred' due to it being a faster/more reliable link. The other link(s) should only be used if the primary connection is down. An example would be a Leased line as primary wan link (wan1) and DSL as a secondary wan link (wan2). Both to be members of SD-WAN (for simplicity of setup and IPv4 rule management). Primary link 'wan1' should be used for all traffic, unless it has failed in which case 'wan2' is used. On FortiOS 6.2.x it seems that SD-WAN rules are ignored and the traffic hits the implicit rule at the bottom and is balanced across all available SD-WAN members. Changing the algorithm has some affect (Source IP / Spillover / Volume / etc) but doesn't ever seem to result in wan2 being completely idle when wan1 is up/available. I understand it would be possible if not using SD-WAN and only using static route metrics but this would require a lot of change to our existing estate, and make management more awkward as IPv4 rules would need to be duplicated for each additional wan link. Can we achieve this on FortiOS v6.2.7 while still using SD-WAN? 6.0 wasn't perfect either but we've been seeing more issues on v6.2.7 that we did on v6.0.10. All observed on a variety of devices 30E/60E/100E.
