FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Description This article describes how to trace-route using SD-WAN interface Scope For version 7.0.1. Solution
By default, self-originating traffic, such as Syslog, FortiAnalyzer logging, FortiGuard services, remote authentication, and others, relies on routing table lookups to determine the egress interface that is used to initiate the connection.
Policy routes generated by SD-WAN rules do not apply to this traffic.
To traceroute traffic which passes through the SD-WAN rule we can below commands
nitrogen-kvm06 # execute traceroute-options
device <----- Auto | <ifname>.
queries <----- Integer value to specify number of queries per hop.
source <----- Auto | <source interface IP>.
use-sdwan <----- Use SD-WAN rules to get output interface <yes | no>.
view-settings <----- View the current options of traceroute.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.