Description | This article explains how to add another BGP peer out of the SD-WAN provisioning templates. |
Scope | FortiManager v7.4 and 7.6. |
Solution |
FortiManager v7.4 and FortiManager 7.6 use the SD-WAN Overlay Template wizard to create all the SD-WAN provisioning Templates for deployments of FortiGate HUB & Spoke topology network.
This article is focused on a network topology Single HUB, but can be used on the other topologies available.
In some network deployments there is requirement to have external BGP peers which are out of the FortiGate SD-WAN domain.
To implement it when an SD-WAN deployment via FortiManager already exists, use the SD-WAN Provisioning Templates as follows:
After the SD-WAN Overlay Template wizard has been completed and is already installed, FortiManager will have two Template Groups: SDWAN_Fabric_HUB1 and SDWAN_Fabric_BRANCH. Each of them are associated the multiple Provisioning Templates (i.e. IPsec Tunnel Template, BGP Template, SD-WAN Template, Static Route Template, etc.)
In FortiManager 7.4, go to Device Manager -> Provisioning Templates -> Template Group.
The Template Groups are associated with the FortiGate in accordance with their roles: HUB or BRANCH.
Because the SDWAN_Fabric_BRANCH is associated with two spokes, any change to the template will affect the other spokes, so another Template Group is needed.
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.