Hello.
I've got FortiGate 140D with three physical WAN connections (using BGP). I've configured them as a one zone called "ISPs" and used in this manner with IPv4 Policies. I would like to create a WAN Link Load Balance between these interfaces, but I cannot choose them separately from the list (or not even as ISPs zone). Is there a possibility to use this zone members separately in WAN LLB and not deleting current Firewall rules with interface "ISPs"?
Nope.
When you create a zone you lose the control on the single interface but you see them as a whole.
Thank you for quick reply.
So basically I must delete WAN interfaces membership from zone ISPs, and then set-up WAN LLB but what should I do with IPv4 Firewall Policies? Everywhere where used "ISPs" as interface should I place three interfaces and it will work?
Are you doing the BGP on the FortiGate itself or on an upstream switch?
I prefer ZONEs to WLLB. It keeps things simple when you start looking at incoming traffic etc in my experience.
Mike Pruett
User | Count |
---|---|
2259 | |
1226 | |
772 | |
451 | |
367 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.