Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
siayres
New Contributor

HA on two 40F - Two WAN Lines

Hi all,

 

Am hoping you can help with an issue I can't seem to get my head around!

 

We have a site that has two WAN lines - one is a Starlink (DHCP) and the other a leased line (PPoE). We have the Starlink line going into one 40F, and the leased going into the other, with a patch running between the two on LAN3. I've set HA up for the the leased line 40F to be the primary, which is absolutely fine. However, when I sync the firewalls the PPoE WAN settings from the primary overwrite those on the secondary, meaning that when the primary 'fails' the secondary does not provide internet access. 

 

Is there something really obvious I'm missing here, or will this setup not work?

 

Simon

2 REPLIES 2
Toshi_Esumi
SuperUser
SuperUser

Regardless active-passive or active-active, most of config on both units has to be identical, or the secondary syncs with the primary config. You can not have different config on wan interface between two units.
What you need to do is to have a vlan switch terminating both Starlink and leased line (MPLS?), then span those two connections to both units, I recommend wan and 'a' if you're not using fortilink. You have to remove fortilink related config though.

Toshi

siayres

Hi @Toshi_Esumi ,

 

Thanks for that - wasn't the answer I wanted but makes sense!

 

Simon

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors