Hello,
We’re running a standalone FortiGate 60F on FortiOS 7.4.7. Our setup has two WAN links:
ISP1 = backup
ISP2 = primary
Our goal is to:
Force all Microsoft Teams voice/media traffic (UDP 3478–3481 for STUN/TURN and UDP 50000–50059 for RTP) to always use ISP2, with ISP1 only as a backup.
Make sure Teams voice traffic has higher priority than all other traffic on the network so call quality isn’t impacted during congestion.
Since this is a standalone 60F, I know some advanced SD-WAN features may not be available. What’s the best practice on this platform for:
Steering those specific ports to ISP2 (router-policy vs SD-WAN service match).
Ensuring return traffic stays symmetric on ISP2.
Setting QoS / traffic shaping so Teams traffic gets top priority.
Any config snippets or guidance would be appreciated!
Thanks,
Hello nflnetwork29,
Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Thanks,
Hello,
We are still looking for an answer to your question.
We will come back to you ASAP.
Thanks,
Good approach focusing on port-based steering using SD-WAN service match with policy routing should keep Teams traffic consistent on ISP2. I had a similar setup tweak while browsing labubuclothes, and prioritizing key traffic really made a difference in stability.
hi,
a option would be to use a sdwan policy and route based on application but with will require a application policy to be applied to the firewall rules in order to identify the app.
for pbr on the other hand, you could rely on L3/L4 information .
User | Count |
---|---|
2570 | |
1364 | |
796 | |
651 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.