FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
ldsouza
Staff
Staff

Description
This article describes how to add the interface to the SD-WAN.

 

Scope
FortiGate


Solution
Before configuring FortiGate interfaces as SD-WAN members, it is necessary to remove or redirect existing configuration references to those interfaces in routes and security policies.
This includes the default Internet access policy that’s included with many FortiGate models.

Note that after removing the routes and security policies, traffic cannot reach the WAN ports through the FortiGate.
Redirecting the routes and policies to reference other interfaces avoids having to create them again later.

Example.


1) WAN2 is the physical interface which to add in the SD-WAN member but WAN2 has reference in the static route and policies.


 
 
 
2) Remove the reference of WAN2 from Policy and route configuration.
 
 
 
 
3) Now the interface WAN2 can be added in the SD-WAN member configuration.
 
 

 

Contributors