FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
rtichkule
Staff
Staff
Article Id 326179
Description This article describes how to change/specify the outgoing interface for DNS traffic in GUI
Scope FortiGate.
Solution

By default, the interface selection is auto in DNS configuration. It can be changed through CLI to a specific interface or SD-WAN.

With the help of the below article, it can be changed:

How to specify outgoing interface for loc... - Fortinet Community

 

If the user is not an expert with the CLI and wants to change through GUI then follow the below steps:

  • Navigate to System -> Feature Visibility and enable the Local Out Routing as per the below snapshot.

 

Feature.jpg

 

  • Go to Network -> Local Out Routing -> System, select System DNS, and then specify the outgoing interface.

 

LOCAL OUT.png

 

  • Once done, the local DNS traffic will be sent through a particular interface that is configured.

 

final.png

 

The same can be verified through CLI with the below command:

 

show full-configuration system dns

 

image (3).png