Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
nflnetwork29
New Contributor III

Force all Teams Voice traffic out WAN2 and prioritize over other traffic

Hello,

We’re running a standalone FortiGate 60F on FortiOS 7.4.7. Our setup has two WAN links:

  • ISP1 = backup

  • ISP2 = primary

Our goal is to:

  1. Force all Microsoft Teams voice/media traffic (UDP 3478–3481 for STUN/TURN and UDP 50000–50059 for RTP) to always use ISP2, with ISP1 only as a backup.

  2. Make sure Teams voice traffic has higher priority than all other traffic on the network so call quality isn’t impacted during congestion.

Since this is a standalone 60F, I know some advanced SD-WAN features may not be available. What’s the best practice on this platform for:

  • Steering those specific ports to ISP2 (router-policy vs SD-WAN service match).

  • Ensuring return traffic stays symmetric on ISP2.

  • Setting QoS / traffic shaping so Teams traffic gets top priority.

Any config snippets or guidance would be appreciated!

Thanks,

4 REPLIES 4
Jean-Philippe_P
Moderator
Moderator

Hello nflnetwork29, 

 

Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible. 

 

Thanks, 

Regards,

Jean-Philippe - Fortinet Community Team
Jean-Philippe_P
Moderator
Moderator

Hello,

 

We are still looking for an answer to your question.

 

We will come back to you ASAP.

 

Thanks,

Regards,

Jean-Philippe - Fortinet Community Team
jacksonville51
Visitor

Good approach focusing on port-based steering using SD-WAN service match with policy routing should keep Teams traffic consistent on ISP2. I had a similar setup tweak while browsing labubuclothes, and prioritizing key traffic really made a difference in stability.

funkylicious
SuperUser
SuperUser

hi,

a option would be to use a sdwan policy and route based on application but with will require a application policy to be applied to the firewall rules in order to identify the app.

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Application-learning-phases-in-SD-WAN-appl...

for pbr on the other hand, you could rely on L3/L4 information .

"jack of all trades, master of none"
"jack of all trades, master of none"
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors