Interface wan-load-balance , WAN1 WAN2 Problem Greetings to you My device is 200D , OS 5.2.8 My problem ....... I made new interface wan-load-balance it used WAN1 AND WAN2 ........... Internet working when I used wan-load-balance interface --------------> OK but after I remove wan-load-balance and make WAN1 separate and WAN2 separate then when I create policy to shift (all src) to WAN1 OR WAN 2 Internet not working and doping packet in Firewall ! Internet it will work, if I create policy route to force traffic to Either WAN1 OR WAN2 ---- I don't want to use Policy route ! Before I Think to create wan-load-balance , I used to WAN 1 with policy to shift traffic to WAN1 without using policy route LIKE ---------- FROM LAN TO WAN1 ...... THEN USERS GETTING INTERNET !
now after remove wan-load-balance interface and Make each Interface sprats WAN1 AND WAN2 .... If I create new policy to shift traffic to WAN1 it will not work with me I mean no internet if I create policy route and force traffic to WAN1 then I can get Internet ! Why this happened ? I don't want to use policy route .. because I want later on to use fail over method if WAN1 GOES Down I want to other LINK take over if I'm using policy route failover will not work because policy route force traffic to one interface
Please I need to solve this problem
Sometimes I feel confuse form Fortigate behavior
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
hi,
you have probably still 2 default routes in the routing table. Remove the one for WAN 2, or increase it's priority (CLI) i f you want to keep it in the table.
Removing the LLB interface will not (AFAIK) remove all other steps it has taken, routes, policies etc.
ede_pfau wrote:hi,
you have probably still 2 default routes in the routing table. Remove the one for WAN 2, or increase it's priority (CLI) i f you want to keep it in the table.
Removing the LLB interface will not (AFAIK) remove all other steps it has taken, routes, policies etc.
Yes Still I have 2 Defaults Routes for WAN1 AND WAN2 ....... how I can return every things to normal ? I don't want WAN-LOAD-BALANCE
Do you think the solution is "remove static route and re-type it again ?" for 2 WAN Interfaces
Well, no, just remove the static default route to WAN2. The one with WAN1 should then be the only one.
ede_pfau wrote:Well, no, just remove the static default route to WAN2. The one with WAN1 should then be the only one.
I'll do it today after 5:00 PM KAS ZONE TIME ...
if I delete WAN 2 and still the problem exists ? what should I do ? as the OS 5.2.8
If deleting the second route does not help then please run a diagnostic: "diag debug flow", following a ping from LAN to somewhere in the world. The how-to is documented many, many times here in the forum.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1641 | |
1069 | |
751 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.