Good morning all!
After many read-throughs, I don't believe that what I would like to do is possible but I figured I'd toss it out here in case I have missed something. We have a primary and secondary ISP for redundancy, but rather than use the lines in a fail-over or load balanced configuration, I was thinking that I could use the primary line for internal traffic only and the backup line for IoT and guest traffic.
The end goal is to push streaming over the backup line and the business critical applications over the primary.
So question 1 is, is this even possible. Question 2 would be, if it is not possible what are the alternatives. Throttling would guarantee my traffic, but might upset guests.
Any thoughts or ideas to try would be appreciated.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi Advntrhike,
Please take a glance at SD-WAN feature of FortiOS since 5.6 released!
http://cookbook.fortinet.com/redundant-internet-sd-wan-56/
For any detailed points, don't hesitate to let me know!
Hi,
Through SD-Wan, you can do want you want. Both ISP interfaces have to be member of the SD-Wan Interface. Default routes to both ISP have to weight to same distance/priority. ECMP (Equal Cost Multi Path) will be handle by SD-Wan.
Configure SD-Wan Usage to 100% to ISP#1 and create rules to force desired traffic to ISP#2. If all IoT are in the same network or VLAN, it is easier to handle. Using SD-Wan Interface will reduce the amount of rules to Internet and the fail-over configuration will works on it own. All SD-Wan rules created to a specific member will be disabled automaticaly when this member failed and routes updated to the other members.
Let me know if you have any question! :)
Philippe
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1634 | |
1063 | |
751 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.