set diffserv-forward enablesuggestion: Did you also set the appropiate DSCP codepoint for the traffic for any reverse or forwarded traffic? ie ( under your fwpolicies ) set diffservcode-forward 101110 (aka EF , dec 46 ) That would pass DSCP value 0x46 for any traffic being sent. I would also sniff it out to validate that it' s being set & classified. You ISP/ITSP should also be able to confirm or disconfirm, that' s it' s being set and depending on your switch, you can validate DCSP. If you have cisco, you might want to trust DSCP from the fortigate & ITSP access ports. Either way, get a capture before and after & review the DSCP settings with tcpdump or wireshark. Wireshark, would also be great for voice and telephony analyzer. hope this helps
PCNSE
NSE
StrongSwan
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.