response for traficI' m not sure if I understand you right. However, if you want, for example ICMP reply directly from WAN1. then you need to set up your VIP only to the ports you want the DMZ to answer. What " response for trafic" do you mean? How is your VIP setup now?
Fortigate <3
Fortigate <3
I would like to use ECMP weighted load balance routing method for wan1 & wan2 interfaces, but I would like to only use wan2 for outgoing traffic (from int1, int2... interfaces). Here is my routing configuration :
- wan2 = 0.0.0.0/0, dist = 10, weight = 4294967295
- wan1 = 0.0.0.0/0, dist = 10, weight = 0
I know that I could :
- use policy routing
- specify a higher distance for wan1 interface (and use a ping server ...)
But I do not want to use these features in that specific case (which is more complex).
Will the ECMP weighted load balance only use wan2 interface for outgoing traffic with such configuration (or will it sometimes use wan1) ?
| User | Count |
|---|---|
| 2675 | |
| 1410 | |
| 810 | |
| 702 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.