Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Lukevador
New Contributor

PBR on a SD-WAN interface

Hi everyone,

 

I got this fortigate in my company with wan1 as a default route, I was able to create a sdwan link with wan2 and an some other port.

The sdwan gonna be the path to internet for a very specific segment. the other must go out from wan1 

I was counting to do that by policy based route but i found out it's not possible since the sdwan is not listed in the outgoing port in the PBR.

Now I'm trying to route this specific segment to internet without having to change the default route to point at my sdwan so I could let wan1 be the default path to internet for others segments.

 

Anyway to acheive that.

 

I got a Fortigate 8200D with v6.2.4

 

Thanks to you All

 

Luke

 

2 REPLIES 2
emnoc
Esteemed Contributor III

You bill SDWAN rules for this , select whatever src/services/etc.... and route that to whatever ISP over that sdwan member-link.

 

 

https://docs.fortinet.com/document/fortigate/6.2.0/cookbook/716691/wan-path-control

 

Ken  Felix

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
Lukevador

Hi Ken,

 

Thank you for the replay, I already did the SD-WAN rules by selecting my segment as the source. In spite of that, the route in this rule  didn't match and the traffic still uses the non-sdwan interface (wan1) as the outbound interface. 

I also add "set default enable" and "set gateway enable" in this rule, which didn't change much.

 

Luke

Labels
Top Kudoed Authors