Description | This article describes how to force ADVPN shortcuts to be created on their respective VPN tunnels. |
Scope | FortiGate |
Solution |
Problem :
Due to the routing decision of the Hub, the ADVPN shortcut tunnel at BR-2 was created on HUB1-VPN3 instead of HUB1-VPN1 where it was created for the BR-1.
Solution :
Configure a policy routing or SD-WAN rule in the Hub.
# config system sdwan
In this example, route-tagging was used on the SD-WAN rules for simplicity but it is not necessarily required. Configuring SD-WAN rules or policy routes with specific subnets will suffice as long as the respective source interface and priority members are set.
For more information regarding BGP and SD-WAN route-tagging, check the article below.
Results :
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.