Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Umesh
Contributor II

Discussion of route priority with SDWAN

Dear All,

 

Description - I have two IPsec tunnel interfaces for the same destination, want to give preference tunnel 2 over tunnel 1.

I have two IPsec tunnel interfaces which is the member of SDWAN ZONE. I wanted to give preference tunnel 2 interface for the same destination with using priority inside the static route.  but did not get preference tunnel 2 over tunnel 1.

If I use SDWAN rule to give preference tunnel 2 interface over tunnel 1 interface. it is taking tunnel 2 interface to forward the traffic for the same destination. but when I use route priority inside the static route then preference is not getting to tunnel 2 interface.

 

I just want to confirm with you all if any IPsec tunnel interfaces are member of SDWAN ZONE cannot be used route priority to give the preference  over other tunnel.

Instead of we can use SDWAN Rule to give the preference over another tunnel.

 

 

Also please share source of knowledge if related it.a

 

Thank you all.

 

 

Regards,

Umesh

 

   

1 REPLY 1
funkylicious
SuperUser
SuperUser

hi,

first you need to have an overview on how the routing is handled - https://community.fortinet.com/t5/FortiGate/Technical-Tip-Routing-in-FortiGate-route-lookup-process/...

i would suggest using/selecting the oif ( outgoing interface ) in sd-wan rules rather than changing priority of members. in theory it could work w/ a static route using the sdwan zone but it could complicate other stuff - https://community.fortinet.com/t5/FortiGate/Technical-Tip-Assigning-Priority-to-SD-WAN-Members-for-D... 

"jack of all trades, master of none"
"jack of all trades, master of none"
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors