Description | This article explains how to resolve connectivity issues of the Fabric connector to Forticlient EMS Cloud when SDWAN is used. This solution applies in FortiOs v6.4.4-v6.4.8 |
Scope | FortiOs v6.4.4-6.4.8 |
Solution |
The Self-originating traffic to Forticlient EMS Cloud relies on routing table lookups to determine the egress interface that is used to initiate the connection.
The cloud server is resolved to the following IPs: 3.67.24.12, 3.65.237.68, 3.66.180.106
-configure firewall address objects for each IP
# config firewall address # edit "3.67.24.12/32" # set allow-routing enable # next # set allow-routing enable # next # set allow-routing enable # next # end
-configure an address group that includes all the addresses objects
# edit "Forticloud-EMS" # set uuid f8b04a4c-8da3-51ec-f889-c6e3480e4432 # next # end
- configure a static route pointing to the desired interface
# edit 0 # set device <interface> # next #end
Documentation: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.