I have two Fortigate 500E's in separate locations (primary site and failover site) that connect to each other via ISP link. I have 7 branch locations that connect to both sites (primary and failover) via the same link. Each 500E has it's own independent Internet connection and I would like to create a failover connection, so if the primary site goes down, all branch gates route to the failover site instead. Because they are all connected via the same link, I only have one WAN port. I set each WAN port to have a secondary address which matches the failover site LAN. I am looking for suggestions on how to configure the branch gates to automatically re-route to the failover site if connection to the primary site is lost.
Primary gate: Primary IP 10.0.0.1 / Secondary IP 126.96.36.199
Failover gate: 188.8.131.52
Branch A WAN 1: Primary IP 10.0.0.4 / Secondary IP 184.108.40.206
Branch B WAN 1: Primary IP 10.0.0.5 / Secondary IP 220.127.116.11
Branch C WAN 1: Primary IP 10.0.0.6 / Secondary IP 18.104.22.168
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.