Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
tturba
New Contributor III

WAN LLB on Zone members?

Hello.

 

I've got FortiGate 140D with three physical WAN connections (using BGP). I've configured them as a one zone called "ISPs" and used in this manner with IPv4 Policies. I would like to create a WAN Link Load Balance between these interfaces, but I cannot choose them separately from the list (or not even as ISPs zone). Is there a possibility to use this zone members separately in WAN LLB and not deleting current Firewall rules with interface "ISPs"?

3 REPLIES 3
Alby23
Contributor II

Nope.

When you create a zone you lose the control on the single interface but you see them as a whole.

tturba
New Contributor III

Thank you for quick reply.

 

So basically I must delete WAN interfaces membership from zone ISPs, and then set-up WAN LLB but what should I do with IPv4 Firewall Policies? Everywhere where used "ISPs" as interface should I place three interfaces and it will work?

MikePruett
Valued Contributor

Are you doing the BGP on the FortiGate itself or on an upstream switch?

 

I prefer ZONEs to WLLB. It keeps things simple when you start looking at incoming traffic etc in my experience.

Mike Pruett Fortinet GURU | Fortinet Training Videos
Labels
Top Kudoed Authors