Ip-pools and routing tables

Author
ftristao
New Member
  • Total Posts : 2
  • Scores: 0
  • Reward points: 0
  • Joined: 2020/07/08 13:25:57
  • Status: offline
2021/04/08 07:25:21 (permalink)
0

Ip-pools and routing tables

Hi! I'm asking about how does fortigate decide wich pool to use when the rule is built on a zone (two wans) and it is configured to use two pools, one of each net.
#1

1 Reply Related Threads

    lobstercreed
    Platinum Member
    • Total Posts : 393
    • Scores: 45
    • Reward points: 0
    • Joined: 2018/11/28 14:57:58
    • Location: Sedalia, MO
    • Status: offline
    Re: Ip-pools and routing tables 2021/04/12 07:20:59 (permalink)
    0
    Hey Francisco,
     
    Great question that I ran into months ago when doing a particular SD-WAN design.  There are two solutions as I understand it.  #2 is what I am moving to shortly (I think it makes more sense to folks with experience on other vendors, especially Cisco), but I used #1 for my PoC.
     
    1. From CLI, set associated-interface for the IP pool.  Select both IP pools on the rule and the right one will get chosen based on the egress interface.
    2. If your "zone" is an SD-WAN zone (6.4 code), you can use Central NAT and the SNAT policy table to specify which IP pool is used when egressing a particular interface.
    Hope that helps you!  - Daniel
    #2
    Jump to:
    © 2021 APG vNext Commercial Version 5.5