PurposeA FortiGate unit is unable to connect to FDS servers if a
firewall policy is specified with destination address set to "All" being
destination address 0.0.0.0/0 AND action set to IPSec. This is because
traffic self originated by the FortiGate ...
Hello, It looks there is two default routes so ECMP gets trigger and
outgoing traffic from the server takes sometime WAN1 and sometime WAN2
ISP. You can create a policy route if you want to traffic via a specific
ISP ( WAN2 ), also configure VIP with...