Dear Community Members,
we are facing the internet slowness issue with SDWAN-VPN users. we have created the IPsec tunnel with remote PF sense but to load balance and achieve the failover scenario, we made VPN part of SDWAN. However after making the part to SDWAN internet browsing is to slow. i have changed the Weights in SDWAN rules but nothing works.
There is not enough information provided. Are we expecting the internet traffic to go over the VPN?
If not, you may need to make a rule for the VPN traffic to go over the just the VPN (if hitting the implicit rule it would mix traffic to all SDWAN members).
You would then have another rule below that to go over the WAN interface for the rest of the traffic.
Actually we configured VPN tunnel for some VLAN users, now they are connected with remote PF sense deployed on other site. we have configured internet policy for incoming tunnel users. and make the SDWAN for the VPN tunnels for the failover and load balancing. but the issue is after configuring SDWAN for VPN the internet slowness occurs i have changed the weights but nothing happend.
It is still not clear what the issue is, are you saying you are routing internet traffic from the PFsense box over the tunnel so it exits out of our FortiGate?
If so, are you saying that those users have slow internet? Or users who are actually connected locally behind the firewall now have slow internet?
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1741 | |
1109 | |
755 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.