Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Radu
New Contributor

New Advanced setup questions

Hi everyone,

 

This is the first time i am working with Fortinet devices. I have a more advanced setup i need to set up for out company and i would really appreciate some input.

 

The setup:

Office 1: 2xFG200D setup in HA

Office 2: 2xFG100D setup in HA

 

Each office has 2 internet connections Office 1 and Office 2 ISP1 and ISP2

What i would like to accomplish, please let me know if it is possible or not

Use load balancing and redundancy over both internet lines at both locations, using Wan-Laod-balancing interface (should this be done diffrerent?

 

Have 2xIPSEC VPN: 1 VPN over ISP 1 and 1 VPN over ISP2 (i want ISP 1 to ISP 1 and ISP 2 to ISP 2 only since i have around 500 Mb bandwidth over their internal network as compared to ISP1 going to ISP2)

One IPSEC VPN always active, and in case it drops, it goes over the other with a lower route distance. Do i need to set up a monitor for this, or it will failover automatically?

Since obth WAN are in the virtual wan-load-balancer will i be able to create 2 VPN tunnels?

 

SIP must go over Wan1 and only in case Wan1 drops it fails over Wan2. Will policy based routing work so i can force certain traffic to always go over a certain ISP?

 

Please advise

 

thank you

 

 

 

0 REPLIES 0
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors