FortiADC
FortiADC enhances the scalability, performance, and security of your applications whether they are hosted on premises or in the cloud.
JordAnge
Staff
Staff
Article Id 281281
Description

This article describes how to configure LLB with the purpose of balancing the connection through the multiple outgoing interfaces (or ISP links).

 

The FortiADC balances traffic among multiple upstream links. If the primary link fails., traffic is seamlessly redirected through a backup link.

 

It is possible to configure link load balancing for inbound traffic, outbound traffic, or both. Outbound link load balance is the most used configuration.

 

LLB-Conf__01.png

 

Many of the optional objects are configured as system-wide shared resources. Examples of optional objects include schedule, address, service, and health check.

Scope

FortiADC.

 

There is no need to have 2 or more ISPs to configure link-load-balance.
It can be configured with just 1 ISP and monitor the bandwidth usage of it.

 

Topology:

 

                                                ISP-1

LAN         ===> FADC ===|

                                                ISP-2

Solution
  1. Configure the network interfaces associated with the upstream links.

 

LLB-Conf__02.png

 

 

  1. From Link Group -> Gateway, configure the gateway-address associated with the upstream interfaces.

 

LLB-Conf__03.png

 

Optionally it is possible to set a health-check to monitor the availability of the gateway and to set the Inbound/Outbound bandwidth (Kbps) as well as the Spillover based on the bandwidth in upstream links.

 

  1. From Link Group -> Link Group, set the name and the gateways previously configured.

 

LLB-Conf__04.png

 

Set the Route Method and persistence used to balance the connections between the upstream links.

On Link Members, it is possible to set the gateways, the weight, and the role (primary/backup) of them.

 

  1. Go to Link Policy, create a new policy, and configure the Ingress Interface and the Link Group that includes the upstream links.

 

LLB-Conf__05.png

 

The policy can be applied based on:

  • Source.
  • Destination.
  • Service.
  • Schedule.

 

  1. From FortiView -> LINK LOAD BALANCE -> Gateway, it will be visible the gateways configured.

 

LLB-Conf__06.png

 

Enable the 'Monitor' checkbox to display the throughput (Inbound / Outbound) of the ISP link.

  • From Log & Report -> Traffic Log can be visible the balance of connections.

 

LLB-Conf__08.png

 

LLB checkbox must be enabled first from Log & Report -> Log Setting.

 

LLB-Conf__07.png

Contributors