Description |
This article discusses that Local-out traffic is defined as the traffic initiated by FortiGate, usually for management purposes. For example, when it is necessary to ping a device from FortiGate, that is local-out traffic. When FortiGate connects to FortiGuard to |
Scope | FortiGate v6.4 or Later. |
Solution |
interface-select-method is available on multiple features:
config system dns | ntp | sflow | netflow config system central-management config system fortiguard config user radius | ldap | fsso config log fortianalyzer setting config log syslogd setting
Note:
Example:
***DNS*** FGT # config system dns
To enable SD-WAN for ping and traceroute:
execute ping-options use-sdwan yes execute traceroute-options use-sdwan yes
For example, 10.20.99.2 is the Firewall interface's IP address, traffic from it will be considered local-out traffic and by default, it does not follow the SD-WAN rule. If the 'use-sdwan' option is enabled, it will follow the SD-WAN rule:
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.