Description | This article describes how to use the SD-WAN rule input-device negate feature so that the SD-WAN rule would only take effect if the incoming traffic hits the specific interface not listed in the input-device. |
Scope | FortiGate v6.4, v7.0, v7.2, v7.4, v7.6 |
Solution |
In the following diagram, FortiGate will route the traffic of Guest network traffic coming from its port4. FortiGate will not route the Guest network traffic out of port1 instead it will route it out of port2.
config sys sdwan config service edit 1 set name "Corporate_INET" edit 2 set name "ALL_INET" next end
config firewall policy
Verification:
|