Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Igor_Ribeiro
New Contributor

ADVPN + BGP + SDWAN

Good morning,

I am having a problem with an ADVPN using IPsec tunnels.

I have a hub-and-spoke setup, and at my branch office, I have two IPsec tunnels that communicate with the hub using the ADVPN BGP routing protocol.

When my branch office’s spoke-1 degrades, BGP routing doesn’t detect the failure in the SLA performance configured in the SD-WAN, where both tunnels (spoke-1 and spoke-2) are located, and it continues routing through the degraded spoke-1.

Has anyone else experienced this issue?

In the SD-WAN SLA configuration, I have disabled the static route update.

3 REPLIES 3
Jean-Philippe_P
Moderator
Moderator

Hello Igor_Ribeiro, 

 

Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible. 

 

Thanks, 

Regards,
Jean-Philippe - Fortinet Community Team
Jean-Philippe_P
Moderator
Moderator

Hello,

 

We are still looking for an answer to your question.

 

We will come back to you ASAP.

 

Thanks,

Regards,
Jean-Philippe - Fortinet Community Team
funkylicious
SuperUser
SuperUser

hi,

have you implemented a extra config for BGP similar with the one described https://docs.fortinet.com/document/fortigate/7.0.0/sd-wan-self-healing-with-bgp/559415/overview ?

 

"jack of all trades, master of none"
"jack of all trades, master of none"
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors