FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
VinayHM
Staff
Staff
Article Id 423889
Description This article describes why it is not possible to use the same server for multiple Performance SLAs.
Scope FortiGate.
Solution

When trying to configure multiple health checks, it is not possible to use the same server on different Performance SLAs.

The intention is to keep the configuration simple. If multiple interfaces are needed to monitor one server, they should be used in the same Performance SLA.

 

This is the error that would be seen when trying to configure this:

 

Slasla.png
The other SLA with the name 'Overlay_Health' exists on the same server:

 

Overlay_Health.PNG

 

If there is a requirement to add multiple outgoing interfaces to monitor towards a single destination server, then they should be added in the same SD-WAN performance SLA.

If the set-source option is used in the sla, then that source-ip should be able to reach the target server through all of the outgoing interfaces that are part of this SLA.

 

config system sdwan
    config health-check
        edit Perf1 
            set source <IP address>   <---- source-IP to be used for the health check.
end

 

Related article: 

Technical Tip: How to configure source IP for Secure SD-WAN Performance SLA