VIP and nat

Author
TomerDi1987
New Member
  • Total Posts : 1
  • Scores: 0
  • Reward points: 0
  • Joined: 2019/08/19 04:14:39
  • Status: offline
2019/08/19 04:31:56 (permalink)
0

VIP and nat

I have 3 WAN interface, I configure VIP Port 80 to internal server:
WAN1(isp1) -> port 80 to 192.168.17.1 port 80
WAN2(isp2) -> port 80 to 192.168.17.1 port 80
WAN3(isp3) -> port 80 to 192.168.17.1 port 80
 
My default route point to  WAN2 (ISP2)
 
When the client go to the server by the VIP I want:
traffic comes from any source to WAN1 will go back to the source from WAN1
traffic comes from any source to WAN2 will go back to the source from WAN2
traffic comes from any source to WAN3 will go back to the source from WAN3
 
any Idea how to do that ?
Is enable NAT on the policy will make sure that traffic will return from the same interface that arrived ?
#1

2 Replies Related Threads

    Toshi Esumi
    Expert Member
    • Total Posts : 1648
    • Scores: 139
    • Reward points: 0
    • Joined: 2014/11/06 09:56:42
    • Status: offline
    Re: VIP and nat 2019/08/20 08:07:43 (permalink)
    0
    You need three default routes to all of them. As long as routes are there FGT should route return traffic back to where it's initiated.
    #2
    OneOfUs
    Bronze Member
    • Total Posts : 30
    • Scores: 6
    • Reward points: 0
    • Joined: 2019/07/16 06:32:59
    • Status: offline
    Re: VIP and nat 2019/08/21 05:46:00 (permalink)
    0
    To add on to what Toshi stated, you may want to look at using ECMP:
    https://kb.fortinet.com/kb/viewContent.do?externalId=100137
     
    #3
    Jump to:
    © 2019 APG vNext Commercial Version 5.5