Hello all
I have a question about SD WAN and "no SD WAN" in the same time.
I'm learning network, and at now I training on fortigate 200F the SD-WAN configuration. My problem, maybe not a prpoblem for somebody with more expirence :)
I have three link.
Two of them I configured with SD-WAN, this first SD-WAN work very well, I have internet connection from my VLAN's.
Now I'm connected third link I want configure there DMZ (for some FTP stuf), so i try configure port like in documentation 1. cfg port. 2. Create static routing etc.
But I have information "You cannot have duplicated routes on SD-WAN and non SD-WAN interfaces."
So now I don't know the idea.
I want separate link, this should not work with another I already have.
So how to start this proces, at now Im created second SD-WAN zone and I use this link like member but this is correct way?
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi Quandit,
You can create more than one SDWAN zones, but remember, the member of one SDWAN zone can not be the member of another SDWAN Zone. Even you can have only one member in SDWAN zone. After creating the SDWAN zones you can create SDWAN rules to route your traffic.
Regards,
Hi malam
At now Im doing like you write probably. I sent some picutre.
Hi Quandit,
Your SDWAN zones are correctly configure and now you can configure your SDWAN rules to route traffic as per your requirment:
Regards,
Hi Quandit
Thank you for your question. You have couple of options.
- If you are running more recent version of FOS, you can divide these interfaces into 2 different SDWAN zones. And use these zones when you are addressing them in routes or firewall policies
- In static route, do not use SDWAN interface, but specific interface. Then you will be able to create default route via any interface you want, even the ones that are not part of SDWAN configuration
Doc for additional info: https://docs.fortinet.com/document/fortigate/6.2.3/technical-tip-multiple-default-routes-where-sdwan...
Thanks
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1679 | |
1085 | |
752 | |
446 | |
226 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.