Created on
09-08-2022
07:31 PM
Edited on
05-08-2025
11:07 PM
By
Jean-Philippe_P
Description | This article describes the behavior of the SD-WAN Rules configured in Manual mode when the Performance SLA for the interface is failing. |
Scope | FortiOS. |
Solution |
If all Performance SLA health-checks are indicating that an interface is dead, even if this interface is used in a manual mode SD-WAN Rule, this SD-WAN rule will be void.
config system sdwan end config members set zone "virtual-wan-link" next config health-check config service
When the Performance SLA is failing, the interface is marked as dead:
diagnose system sdwan health-check
The SD-WAN Rule is disabled:
diagnose system sdwan service Service(1): Address Mode(IPV4) flags=0x200
To avoid this behavior in cases where the configured SLA is used in a different rule and to have the manual rule to be matched, it is possible to configure an SLA which will monitor a different server and will still be up.
This behavior can cause issues when there are multiple rules, and in some of them, the SLA is configured. However, it is also necessary to have rules in manual mode which are always matched. For example, in order to tag the traffic.
Related article: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.