FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
fwilliams
Staff
Staff
Article Id 295447
Description

This article describes how to fix static routes configured with an SD-WAN zone not installed in the routing table.

Scope FortiGate v6.4 and above.
Solution

It is possible to configure a static route referencing an SD-WANzone under the static route configuration and it will not be installed in the routing table. It will not even show up in the 'routing database 'get router info routing-table database'.

 

Below is an interface named 'test-SDWAN1', which is an inter-VDOM link assigned to an SD-WAN zone named UNDERLAY.

 

sdwana1.JPG

 

This UNDERLAY zone was then used to configure a static route to 20.20.20.0/24, which did not make it to the routing table.

 

sdwana2.JPG

 

sdwana3.JPG

 

sdwana4.JPG

 

The cause of this issue is the non-assignment of a Gateway to the SD-WANmember 'test-SDWAN1'.

 

sdwana5.JPG

 

The route showed up in the routing table after assigning a Gateway to the SD-WANmember.

 

sdwana6.JPG

Contributors