FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Nivedha
Staff
Staff
Article Id 301238
Description This article explains how to use the integrated interface feature to move the interface that has references to the SD-WAN zone.
Scope FortiGate v7.x.
Solution

Before FortiGate v7.x:

  • Moving an interface to SD-WAN was a lengthy and manual process.
  • The 'integrate' feature was not available, requiring to:
    • Delete all references to the interface (e.g., IPSec tunnels, static routes).
    • Move the interface to SD-WAN.
    • Manually recreate all the deleted references.

After FortiGate v7.x (using port1 as an example):

  • The process is much simpler and more efficient thanks to the 'integrate' feature.
  • How to move port1 to SD-WAN using the new method:

Note: port1 currently has five references

  • Four references across two IPSec tunnels.
  • One reference in a static route.


1.PNG

 

To move the interface to SDWAN:

 

  1. Select Integrate Interface:

 

1A.PNG

 

  1. Select Migrate to SD-WAN zone:

 

2.PNG

 

  1. Select the SD-WAN zone.
  2. Check the references options (replace the instance or delete the entry).

 

2A.PNG

 

  1. The interface will be moved to the SD-WAN zone.

3.PNG

 

  1. Delete the default static route on port1 and change it to SD-WAN zone. It is required when multiple interfaces are added to the zone.

 

4.PNG

Contributors