Hi All,
Load Balancing is defined for external network, but would like define for LAN.
I set :
Policy Route:
Incoming interface: internal
Source: IP TEST
Destination: IIS SERVER IP
Outgoing interface: internal
Gateway: IP FortiGate
Firewall Policy:
Incoming interface: LAN
Outcoming interface: LAN
Source: IP TEST
Destination: Load Bal
Why I have to set instead of Use Outgoing Interface Address
Thanks
Solved! Go to Solution.
I just tested this with a Virtual Server Load Balance object in a policy that has same source and destination interfaces. It works. So you do not have to move your servers to a different subnet.
Hello Mby,
Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Thanks,
Hi,
1. if you want to load balance, you have to use static routes.
2. routes with equal priority and distance will result in load balance.
please refer to the below link:
=============================
http://docs.fortinet.com/document/fortigate/7.2.3/administration-guide/360563/dual-internet-connecti...
Load balance requires atleast two outgoing interfaces. In your case, I can see that there is only 1 interface defined
Also, the incoming and outgoing are the same interface, hence I do need more info on your requirements as to what type of traffic is loadbalanced
Hi can you please shed some more light on exactly what you are trying to accomplish? Can you post more details about your traffic flow and topology.
To load balance internal traffic most likely you will be using Server Load Balancer on the FortiGate. Please review here: https://docs.fortinet.com/document/fortigate/7.2.3/administration-guide/713497/virtual-server-load-b...
Hi Team,
Can you please explain the issue in detail so that we can understand the requirement.
Accordingly we will suggest
Created on 12-28-2022 06:29 AM Edited on 12-28-2022 06:31 AM
Hi,
I have Load Balancing on Forti but it's work only for external Users.
I want define for internal users.
If needed, I have 2 ISP.
Are the users and the servers in the same subnet? It seems like it given the policy you have created. This will make things more complicated as you'll have to try and do this using NAT trickery which I'm not 100% would work. The best solution would be to have your servers in a different subnet so you can do the load balancing the same way as you do it for external users (from one interface to another).
Hi,
Yes, the users and the servers is in the same subnet.
Ok, I test that.
Thank you
I am pleasantly surprised.
This forum is very serious and consistent.
Thank to all
I just tested this with a Virtual Server Load Balance object in a policy that has same source and destination interfaces. It works. So you do not have to move your servers to a different subnet.
Thanks
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1768 | |
1116 | |
766 | |
447 | |
242 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.