Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
itdoc
New Contributor

WAN routing

Hello.

 

In my branch office network i have 2 LAN network (192.168.20.x and 192.168.110.x) and 2 WAN provider. 

I want use first ISP for VPN connet to Main Office and Second ISP for user WEB access. 

Please help me how it make?

1 Solution
Markus
Valued Contributor

Hello,

Welcome to the forum.

Basically you can achive this with routing and policies.

Use default route for second ISP/User webaccess, and route the according subents for the main office true the first ISP/IPSec Interface.

The documentation of Fortinet is quite good, find here http://cookbook.fortinet.com

and here https://docs.fortinet.com/

 

Good luck


________________________________________________________
--- NSE 4 ---
________________________________________________________

View solution in original post

________________________________________________________--- NSE 4 ---________________________________________________________
4 REPLIES 4
Markus
Valued Contributor

Hello,

Welcome to the forum.

Basically you can achive this with routing and policies.

Use default route for second ISP/User webaccess, and route the according subents for the main office true the first ISP/IPSec Interface.

The documentation of Fortinet is quite good, find here http://cookbook.fortinet.com

and here https://docs.fortinet.com/

 

Good luck


________________________________________________________
--- NSE 4 ---
________________________________________________________

________________________________________________________--- NSE 4 ---________________________________________________________
Ali_Fathy

Hi ,

i need your help on SD-WAN issue:

we have two wan lines from ISP in two different subnets and we are using private IP for WAN interfaces and gateway 

we configured policy and routed through SD-WAN but not working .

when we cancel SD-WAN and route through any one physical WAN interface , it's working and internet working properly .

we make nating on policy to use IP pool with public IP .

we don't know what's the problem when both WAN interfaces merged in SD-WAN not working .

itdoc
New Contributor

Thank you! I used priority for default routes and made static route to Central Office over IPsec interface. Now it work. 

WAN 1
destination IP / MASK 0.0.0.0/0.0.0.0
device WAN1
Gateway XXX.XXX.XXX.1
Distance 10
priority 20


WAN 2
destination IP / MASK 0.0.0.0/0.0.0.0
device WAN2
Gateway xxx.xxx.xxx.2
Distance 10
priority 10
Markus
Valued Contributor

Good to hear and thanks for replying it (for other users). Best regards, Markus


________________________________________________________
--- NSE 4 ---
________________________________________________________

________________________________________________________--- NSE 4 ---________________________________________________________
Labels
Top Kudoed Authors