Dear Experts, By 2 separate vlan switches, can we have 2 different LAN
subnets?Here is an example. "internal" (original vlan switch) has
physical ports 1-3. 192.168.10.1/24New vlan switch called "switch2' has
physical ports 4-5. 172.16.1.1/24Both "in...
Hello Experts, Confirmation for "Adaptive Forward Error Correction
(FEC)".https://docs.fortinet.com/document/fortigate/7.6.4/administration-guide/169010/adaptive-forward-error-correction?utm_source=chatgpt.com
Is Adaptive FEC only applied to the exis...
Hello Experts, At SD-WAN fortigate site-to-site VPN, we use IPsec
aggregation with 2 IPsec tunnels (WAN),which are connected to LTE. At
each LAN side, SIP phone is connected.As voice quality is not good
(maybe due to instablity of LTE),we added Forwa...
Hello Experts,I'm curious about addition/change of alias name for
interface at SD-WAN.Here is our situation. At SD-WAN, we use IPsec
aggregation called "AGG" which consists of WAN1 and WAN2At first, we
confirmed both SD-WAN and AGG were established.N...
Dear Experts, I want to know the theoretical overhead of bandwidth when
IPsec aggregation is used at SD-WAN.For example, pure WAN1: 5Mbps, pure
WAN2: 3Mbps and pure WAN3: 2Mbps.Total is 10Mbps. All WANs is
IPsec-aggregated as SD-WAN. PC1 -- FG1(IPsec...
Sorry, my mistake and I should have clarified more.Some of them works
now. 'internal' has SD-WAN route. The following route cannot be
realized.'switch2' --> 'internal' --> SD-WAN. Any comments would be
appreciated. Best regards,
Dear Jean-Philippe and Experts, I found FEC counter is incremented, by
adding "set fec enable at firewall policy.Only configurable at CLI. I
tried the following both cases. FEC counter is incremented at case 1,
however, it is NOT incremented at case ...
Dear Jean-Philippe,Thanks. Unfortunately, FEC counter ("diag vpn tunnel
fec VPN-NAME") is not still increased. Here are some of configurations.
(Excuse me for the long one.)config vpn ipsec fecedit "fec1"config
mappingsedit 1set base 10set redundant ...
Dear Jean-Philippe, Thanks for your detailed explanation. The same
parameters such as 'base/fec-base' and 'redundant/fec-redundant' are
configured in both "config vpn ipsec fec" and "config vpn ipsec
phase1-interface". Do we really need to configure ...
Dear Jean-Philippe, Thanks for your reply. set fec-mapping-profile
"FEC-Profile" What is "FEC-Profile"?It is new to me. Should I configure
somewhere?Can you tell me where/what/how to do? Thanks in advance and
best regards,