Firewall 1 has WAN1 and WAN2.
Firewall 2 has WAN1 and WAN2.
They are both running HA together,
Assume that I want to connect ISP1 to FW1 WAN1; and ISP2 to FW2 WAN1.
Is it possible?
If they are running HA, how do I know if I am controlling FW1 or FW2?
Ideally in a cluster one node is active and other is backup, which means the link connected to backup node will not be active.
Is there any specific reason for making the ISP2 connection active on FW2? If you are just looking for redundancy configuring default routes via ISP1 and ISP2 with different priorities should help.
You can also consider virtual-clusters to make both nodes active . ref : https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/599385/ha-virtual-cluster-se...
Yes, it is possible to connect ISP1 to FW1 WAN1 and ISP2 to FW2 WAN1 in a High Availability (HA) setup using FortiGate firewalls. In this scenario, you would have two firewalls, each with two WAN interfaces. The primary goal of this setup is to provide redundancy and failover in case one firewall or one ISP connection goes down.
active active is it possible?
But if I connect FW1 to WAN1 and FW2 to WAN1, both WAN1, will there be a confusion?
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1740 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.