Whether a GRE interface can be added to SDWAN member interface??
Currently we have a scenario, where forward traffic will be sent our through one physical interface (Internet) and return traffic will be through GRE built on top of same physical interface. By default with firewall behaviour this packet will be dropped, hence we are exploring on adding this GRE interface to SDWAN member interface to avoid this situation.
We have an external security services which inspects all return traffic and hence GRE tunnel from that device to Fortigate device. But I guess, SDWAN interfaces will be consider as one single logical interface and if bundle GRE interface into SDWAN , it wont consider it as asymmetric traffic.. Because in SDWAN sometimes when link is not performing well, forward traffic might take that overlay path and return traffic comes in a different overlay path.. Hence I am assuming that within SDWAN member interfaces will be considered as symmetric flow.. Please clarify my understanding
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.