Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
isaravia
New Contributor

Split Separate WAN1 Traffic for Internal Port 2 in a FortiGate with an active SD-WAN

Hi guys

 

We have a fortigate configured with 2 ISPs (wan1 and wan2). Right now, we need an internal port with just one ISP connection. We were trying to accomplish this, following these steps one by one:

 

1) Separate Internal port 2 from Hardware Switch

2) Create an Interface for internal port 2 with a different DHCP range. 

2) Create a new VLAN

3) Set VLAN with WAN1 to Internal Port 2

4) Create a Policy Based Rule to set one Port (for example 8293) for the LAN.

 

It didn't work. How can I do this?

Thanks & Best Regards.

1 REPLY 1
akushwaha
Staff
Staff

Hi,
 As I understand you want your Internal Port 2 traffic to go via Wan1 only, you can achieve this by using SDWAN rules if you are using SDWAN.

++Create SDWAN rule and add Internal Port2 as source and  destination as Wan1 port.
++ In Outgoing (Interface selection strategy) select Manual and in Interface preference add WAN1.
++ Also put this SDWAN rule above all rule.
Please refer to below article regarding SDWAN rules:

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Working-of-SD-WAN-rule-with-outgoing-inter...


Thanks and Regards,
Abhimanyu

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors