Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
pawanrohilla1984
New Contributor

Policy route for some IP Address

hi,

 

i have Fortigate 60E firewall with 5.4.10 Version. WAN1 Leases line connection with static ip address. WAN2 local ip through DSL router.

i want some ip address's (192.168.1.11-15, 5 ip address) traffic should go through from WAN2 and rest traffic should go from default WAN1.

Static route configuration

WAN1  Distance 10 Priority 10

WAN2  Distance 10 Priority 20

 

while creating policy route, it is not showing "Source Address" option.

 

how can enable source address in policy route or any alternate way to configure the same?

 

Thanks

 

10 REPLIES 10
sw2090
Honored Contributor

The most easiest way might be this:

 

- create an ip range object for 192.168.1.11-15

- create a policy: source interface is where your 192.168.1.0/24 resides. Destination WAN2. Source is the range object you created above, destination any, service any.

- make sure this policy comes BEFORE the other internet policies to have it be the first that matches. 

 

Then traffic from out 192.168.1.11-15 to the internet will match this policy and go to WAN2 and all other traffic from 192.168.1.0/24 will match some other policy and go to WAN1.

-- 

"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams

-- "It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
Labels
Top Kudoed Authors