Link to home
Start Free TrialLog in
Avatar of IT_Group1
IT_Group1Flag for Israel

asked on

Fortigate 100 - how to enable 2 WAN's

Hi, we have FG 100a and want to enable multiple WAN's to the world.
The conf need to be very basic: Some of the clients\services will go out via 1 WAN, while the other will go through the other WAN. Different NAT addresses are perfectly acceptable (NO BGP required).

BTW, is there a way to enable a fault tolerance\load balancing between the WAN's on the same unit? Active-active would be great.

Many thx
Avatar of adnanj76

There are number of ways fortigate unit can be configured in case of FT you won't be able to utilize the bandwidth of the other network the connection will becomes active once the primary connection fails.

Where as the other configuration possibility is where u want to use both of the WAN connections simultaneously then you have to define policy routes and firewall policies based on the source and destination addresses. I'm using this configuration in my environment.

Let me know if you'd like to know specific configuration settings.
Avatar of IT_Group1


adnanj76 thx, I would be more than happy to learn how to utilize both Wan's.

Many thx
Here is the KB from Fortinet that explains 3 Scenarios very well:

Very nice, but what if I want to use both Wan's at once?
Avatar of adnanj76

Link to home
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
adnanj76, thank you for the great explanation.
Just to be on the safe side, i've attached a screen shot of a new policy route, and some thing aren't clear to me:
- Protocol?
- Type of service (Bit mask, bit pattern..?)

BTW, does the destination address in the policy route should always be
Thank you
please check the attached screenshot
Thx i'll try it out.
Thank you