FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
sashish
Staff
Staff
Article Id 241365
Description

This article describes that starting from version 7.2.x, it is possible to create ISDB destination SD-WAN rule from GUI, instead of creating from CLI with category ID. 

Scope Version 7.2.
Solution

It is possible to create an SD-WAN rule based on the ISDB destination application. 

 

1) Go to Network -> SD-WAN -> SD-WAN rules.

2) Create New: Mention the Internet Service application to give in as destination. 

 

sashish_0-1672294830379.png

 

Note.

Make sure the ISDB rule should be above other rules where the destination is mentioned as 'ALL'.  

This rule will apply only to TEAMS, WebEx, and Zoom traffic. 

 

sashish_1-1672294895538.png

 

It is possible to define 'Interface selection strategy' with Interface preference. 

Select 'SLA' and 'Quality criteria' for the best path selection. 

 

It is possible verify with Forward logs for Source IP and it will show the SD-WAN rule ID on the bottom.

 

It is possible to filter with Source IP and Application name. 

 

sashish_2-1672295279012.png

 

It will show the Hit count and Last used also on the SD-WAN rule. 

Contributors