Skip to main content
jm75
New Member
March 19, 2020
Question

Use load balancing to balance SSL VPN Sessions / workaround "conserve mode"

  • March 19, 2020
  • 1 reply
  • 1900 views

Hello,

 

We use a firewall cluster made up of 2 Fortigate 200D (Fortios v5.6.3) units.

Because it is simpler, for our users, we have chosen to allow RDP connections via a web channel, through SSL VPN.

We have sometimes 40 (or above) SSL VPN sessions, and the primary unit switch in conserve mode ("high memory").

Because, I's

the cluster has been switched from active-passive(a-p) mode to active-active mode (a-a)

Can we enable "load-balance-all"? ("set load-balance-all enable")

 

It wouldbe transient. We currently need to do more teleworking.

 

thank you in advance for your help.

 

J.

    1 reply

    jm75
    jm75Author
    New Member
    March 20, 2020

    We have tried to enable load balancing ("set load-balance-all enable" command). But no effect for the VPN SSL sessions.

    When we have 35 to 40 users connected, the fortigate switch to conserve mode.

     

    Have someone any idea?

     

    Thanks.

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!