FortiGate SDWAN with IPsec VPN

Поделиться
HTML-код
  • Опубликовано: 23 июл 2024
  • This tutorial teaches how to configure SD-WAN between two locations with IPsec VPN tunnels as SD-WAN zone members on FortiGate.
    --------- Contents of this Video ---------
    00:00 Introduction
    01:14 SD-WAN Zone and Members
    02:29 Configure VPN Tunnels
    03:21 Configure Static Routes
    03:50 Configure Firewall Policies
    05:02 Create SD-WAN Performance SLA
    05:53 Configure Ping SLA Source
    06:46 Configure SD-WAN Rules
    08:00 SD-WAN Zone and Members
    09:17 Configure VPN Tunnels
    09:55 Configure Static Routes
    10:28 Configure Firewall Policies
    11:30 Create SD-WAN Performance SLA
    11:53 Configure Ping SLA Source
    12:34 Configure SD-WAN Rules
    13:16 Testing
    14:48 Conclusion
    If you have any questions or need further assistance, please feel free to leave a comment below. Don’t forget to subscribe to our channel for more helpful tutorials.
  • НаукаНаука

Комментарии • 15

  • @livestronger1981
    @livestronger1981 Месяц назад

    I will assume you programmed the remote network and local network subnet group prior to all this? And that you had to do this on both sides of the office? Also, what model is this Forigate? Do the entry models handle this much processing services?

  • @cmpunkalvarez2734
    @cmpunkalvarez2734 Месяц назад

    This option to create vpn from sdwan zone doesn't appear in my fortigate what version do you use it ?

  • @m.imraniqbaal6912
    @m.imraniqbaal6912 10 месяцев назад

    Hi 01:45 is this pre-shared key is the same as configured in IPSec tunnel already? So same key we'll put here?

    • @gyimisgyimis
      @gyimisgyimis 10 месяцев назад

      The pre-shared key was the same for all gateways

  • @DailyFactsMY
    @DailyFactsMY 6 месяцев назад +1

    For source ip at sdwan members, need to use gateway ip of remote lan network ?

    • @verifine-academy
      @verifine-academy  6 месяцев назад

      Source IP for SDWAN members should be one of the IP addresses in the encryption domain (traffic selector) of the VPN

  • @evianq5719
    @evianq5719 2 месяца назад +1

    hi, thanks for this nice video, are you able to share relevant cfg in cli format though?

    • @verifine-academy
      @verifine-academy  2 месяца назад

      Thanks for enjoying the video. Unfortunately we do not have the cli configuration. We will share when we redo this lab.

  • @livingnetwork9115
    @livingnetwork9115 Год назад

    What if we have multiple spokes ? With multiple internet connections.

    • @verifine-academy
      @verifine-academy  Год назад

      See this video tutorial: ruclips.net/video/zkaDwPqZU_k/видео.html

  • @gendisayuningtyas1343
    @gendisayuningtyas1343 Год назад

    If i configure in production firewall, is it possible internet down ?

  • @smile841102
    @smile841102 5 месяцев назад

    Do I need to setup the VPN tunnel ip or not?

    • @verifine-academy
      @verifine-academy  4 месяца назад

      a VPN tunnel IP is required if you want to configure a dynamic routing protocol over the tunnel