Hi Everyone,
I have a 200E deployed and we have two separate static ISP connections coming in from the same provider, utilizing the same GW.
I have two LANS set up, with identical static routes
[ul]And IPV4 policies
[ul]
Issue is that I can only get to the internet on one of LAN1-WAN1 network, the secondary LAN wont connect/ping to the internet.
Solved! Go to Solution.
I would suspect that only one of the default routes is entered into the routing table that is why lan1-wan1 works. Likely what is happening is that the firewall wants to forward traffic from lan2 out of wan1 but there is no policy to allow this so it is dropped. You will need to configure either of these two features:
- SD-WAN
- Policy routing
With SD-WAN you can put both WAN interfaces into a logical 'SD-WAN' interface then create a rule that says anyone coming from lan2 only goes out via wan2.
With policy routing you can create a rule that forces all lan2 traffic to go out of wan2 instead of wan1. You will need to have both default routes in the static routing table for this, but one will need a higher metric.
I would suspect that only one of the default routes is entered into the routing table that is why lan1-wan1 works. Likely what is happening is that the firewall wants to forward traffic from lan2 out of wan1 but there is no policy to allow this so it is dropped. You will need to configure either of these two features:
- SD-WAN
- Policy routing
With SD-WAN you can put both WAN interfaces into a logical 'SD-WAN' interface then create a rule that says anyone coming from lan2 only goes out via wan2.
With policy routing you can create a rule that forces all lan2 traffic to go out of wan2 instead of wan1. You will need to have both default routes in the static routing table for this, but one will need a higher metric.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1751 | |
1114 | |
766 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.