Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
vlw38
New Contributor II

SDWAN interface at HQ vs Branches

In planning stages:SDWAN implementation.  

HQ: (2) Fortigates in HA  (1) MPLS interface and (1) ISP/wan1 interface

Branches: (6) Fortigates, (1) MPLS interface and (1) ISP/wan1 interface

I understand I need to create SDWAN enabled interfaces/members, default routes, etc on branch Fortigates... 

Do I need to also create SDWAN interfaces/default routes etc on the HQ Fortigates?

1 REPLY 1
sw2090
Honored Contributor

You will always need to have at least one default route at least on the FGT. This is needed for internet access and to enable the FGT to reach the Fortinet Servers to get license statuses and virus definitions etc.

 

sd-wan is bascially only needed if there is more than one internet line connected to the FGT and you want it to do load balancing with them.

 

-- 

"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams

-- "It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
Labels
Top Kudoed Authors