Hello, I have a setup with 2 isp' s and two internal networks on
fortigate 100c in NAT mode. Internal network1 is public guest network
and is nated to isp1, internal network2- to isp2. Network1 doesn' t have
any access to network2. There is a bunch V...
Do i understand you correct, you suggest to remove policy routes and to
add firewall policy? I did that (except removing default net1 policy
route)- tried to add any combinations of src/dst interfaces/ip'
s/subnets and it had no effect- traceroute di...
No, it doesn' t. traceroute from net1 to my desired VIP times-out
somewhere on the ISP1 network. I tried to add policy routes (before
default policy route from net1): from net1 to desired VIP via ISP2
interface ip or gateway, from external ip on ISP1...