Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Mayurjrajyaguru
New Contributor

Provisioning Third WAN/Internet connection in 50E

Hello Team,

We are using Fortinet 50E Firewall for small office/home office environment. Currently, we are having dual WAN/internet connection live on firewall. We are load-balancing outgoing traffic with fail over. Both the connections are active/active scenario with single LAN connection. Along with that we have hosted web server and mail server by using port forwarding through VIP.

 

Now, we are planning to introduce new 3rd Internet connection however, firewall has only two WAN ports (WAN1 & WAN2). Is there any way to provision third Internet WAN connection. Appreciate your responses. :)

 

Regards,

Mayur Rajyaguru

2 Solutions
Dave_Hall
Honored Contributor

Glancing at some pics of the 50E it doesn't look like it has any other ports beside WAN1/WAN2 and the internal ports (1 through 5).  Assuming those internal ports are part of a soft or hardware switch that can be breakable, I say remove the 5th port from the membership and add that to the "load-balancing" interface - configure it accordingly. 

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C

View solution in original post

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
siomyn
New Contributor III

Fortigate 50E lan port (1-5) is breakable, you can remove one of them and make it as WAN link.

OMYN

Technical Consultant | Indonesia CCNP Security, Fortinet NSE 

View solution in original post

OMYN Technical Consultant | Indonesia CCNP Security, Fortinet NSE
4 REPLIES 4
Dave_Hall
Honored Contributor

Glancing at some pics of the 50E it doesn't look like it has any other ports beside WAN1/WAN2 and the internal ports (1 through 5).  Assuming those internal ports are part of a soft or hardware switch that can be breakable, I say remove the 5th port from the membership and add that to the "load-balancing" interface - configure it accordingly. 

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
siomyn
New Contributor III

Fortigate 50E lan port (1-5) is breakable, you can remove one of them and make it as WAN link.

OMYN

Technical Consultant | Indonesia CCNP Security, Fortinet NSE 

OMYN Technical Consultant | Indonesia CCNP Security, Fortinet NSE
Mayurjrajyaguru

Thanks Dave & Siomyn,

 

We have had break software switch already. We could provision third Internet as changing port type from LAN to WAN. Would add this into existing load balancing algorithm and test it.

 

Thank you very much Guys for you help and support. :)

 

Regards,

Mayur Rajyaguru

bmorris
New Contributor III

Hi Mayur,

 

Are you running FortiOS 5.6 / 6.0?

 

You can leverage the SD-WAN functionality for this. Under the SD-WAN configuration options click the + button to add in another interface to the group.

 

 

Labels
Top Kudoed Authors