Created on
10-26-2021
08:07 AM
Edited on
07-23-2024
09:42 PM
By
Anthony_E
Description
This article shows how to perform the WAD source affinity exempt for specific source address.
Scope
FortiGate.
Solution
config system globalset wad-source-affinity enableendWhen users are behind NAT device then the traffic from the NATed source IP would be forwarded to only one WAD worker and can load that WAD worker. This can also happen when there are high number of sessions received from few sources.
config web-proxy globalset src-affinity-exempt-addr <IPv4 address> ...set src-affinity-exempt-addr6 <Pv6 address> ...end
Note : These commands are valid for FortiProxy. Tested and verified on the LAB.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.