Hi guys,
I am new to the field of advanced routing. In my company we have the following network construct to a branch office:
At the moment the internet traffic goes over the LTE line, but in the future it should work as a backup internet line, but currently the LTE line is the internet access line for all clients in the branch office.
If we put a new default route 0.0.0.0/0 on the WAN interface with the dark fibre, both routes go down.
How do the two Fortigates have to be configured so that everything runs via the dark fibre and the LTE line is only used if the dark fibre fails?
Thank you in advance for your answers.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hello @oneil1987,
KIndly use this article for the redundant internet.
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Redundant-Internet-connection-without-load...
In this article, Port 1 is considered dark fiber and Port 2 is considered LTE.
Also, Make sure you configure The Policies via Dark Fiber as well and test Internet connectivity from Dark Fiber IP address as well:
exec ping-options x.x.x.x <---------FortiGate Dark Fiber Interface IP address
exec ping 8.8.8.8
If Ping works then the Internet connectivity is fine.
Also, you can double-check the arp table for the Dark Fiber to have the correct Gateway IP address:
get sys arp | grep <dark fiber interface name>
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1660 | |
1071 | |
751 | |
443 | |
219 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.