We've started deploying dual ipsec tunnels using SDWAN on both sides. All devices are running 6.0.5/6
We are deploying this to point to the TS on one side and a static device on the other (usually a switch)
While everything is up, it runs extremely well, however, when the TS is taken down for maintenance, the performance SLA drops and will not come back on the client side end (opposite side to the TS)
The only way I've found to bring this back up is to swap the SLA address then swap back.
IS there a way to make this more resilient?
Can you upgrade and to 6.2.x? I would retest with the newest version and if still persistent, open a ticket.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.