Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
neonbit
Valued Contributor

SD-WAN Policy Based Routes not working with VPN interfaces

I've upgraded some of my devices to 6.2.1 recently and tested the SD-WAN feature and ran into a funny issue with VPN's.

 

In the SD-WAN I have four interfaces added, two are my underlay physical interfaces (MPLS and INTERNET) and the other two are the overlay VPNs on these interfaces (VPN-MPLS and VPN-INTERNET).

 

I've noticed that any SD-WAN rules that reference the VPN interfaces show up in the policy based routes but don't have any interfaces in the 'To' column. The SD-WAN rules that have the underlay interfaces show up correctly.

 

As such none of the SD-WAN rules that I have actually work as no interfaces show up. Attached screenshot shows the SD-WAN rule that references the VPN interfaces as empty, while the one above it referencing the underlay interfaces correctly.

 

Wondering if anyone had this same problem?

1 REPLY 1
neonbit
Valued Contributor

All good found the issue. The performance SLA I had for the VPN SD-WAN rules was not met (server was down), so the route was in the policy routing table but had no interfaces in it. As soon as the SLA was good the interfaces got populated correctly.

Labels
Top Kudoed Authors