Fortinet black logo

Configuring SD-WAN rules

7.2.0
Copy Link
Copy Doc ID d5cef995-c295-11ec-9fd1-fa163e15d75b:943456
Download PDF

Configuring SD-WAN rules

In this section we are going to edit the SD-WAN template to create a new performance SLA target as well as new SD-WAN rules.

To configure SD-WAN rules:
  1. In FortiManager, go to Provisioning Templates > SD-WAN Templates.
  2. Double-click the Branch_SDWAN template to open it for editing.
  3. Create a rule named Corporate_Traffic:
    1. Under SD-WAN Rules, and click Create New. The Create New SD-WAN Rule pane opens.
    2. Set the following options, and click OK:

      Name

      Corporate_Traffic

      Source

      Branch Network, 10.1.0.0/16 (Create new Address Object)

      Destination

      Datacenter LAN1, 192.168.1.0/24 (Create new Address Object)

      Strategy

      Lowest Cost SLA

      Interface Preference

      HUB1 zone

      Required SLA Target

      HUB1_HC#1

      The SD-WAN rule is created.

  4. Create a rule named Cloud_Traffic:
    1. Under SD-WAN Rules, and click Create New. The Create New SD-WAN Rule pane opens.
    2. Set the following options, and click OK:

      Name

      Cloud_Traffic

      Source

      Branch Network

      Destination

      Cloud LAN1, 172.20.1.0/24 (Create new Address Object)

      Strategy

      Lowest Cost SLA

      Interface Preference

      HUB2 zone

      Required SLA Target

      HUB2_HC#1

      The SD-WAN rule is created.

  5. Define an SLA target for internet traffic:
    1. Under Performance SLA, and click Create New. The Create New Performance SLA pane opens.
    2. Set the following options, and click OK:

      Name

      Internet

      Server

      1.1.1.1

      Participants

      port1, port2

      SLA Targets

      • Latency threshold: 300
      • Jitter Threshold: 55
      • Packet Loss Threshold: 3%

      The SLA target is created.

  6. Create a rule named Internet Traffic:
    1. Under SD-WAN Rules, and click Create New. The Create New SD-WAN Rule pane opens.
    2. Set the following options, and click OK:

      Name

      Internet_Traffic

      Source

      Branch Network

      Destination

      all

      Strategy

      Lowest Cost SLA

      Interface Preference

      WAN1, WAN2

      Required SLA Target

      Internet

      The SD-WAN rule is created.

  7. Click OK to save the SD-WAN template.

Configuring SD-WAN rules

In this section we are going to edit the SD-WAN template to create a new performance SLA target as well as new SD-WAN rules.

To configure SD-WAN rules:
  1. In FortiManager, go to Provisioning Templates > SD-WAN Templates.
  2. Double-click the Branch_SDWAN template to open it for editing.
  3. Create a rule named Corporate_Traffic:
    1. Under SD-WAN Rules, and click Create New. The Create New SD-WAN Rule pane opens.
    2. Set the following options, and click OK:

      Name

      Corporate_Traffic

      Source

      Branch Network, 10.1.0.0/16 (Create new Address Object)

      Destination

      Datacenter LAN1, 192.168.1.0/24 (Create new Address Object)

      Strategy

      Lowest Cost SLA

      Interface Preference

      HUB1 zone

      Required SLA Target

      HUB1_HC#1

      The SD-WAN rule is created.

  4. Create a rule named Cloud_Traffic:
    1. Under SD-WAN Rules, and click Create New. The Create New SD-WAN Rule pane opens.
    2. Set the following options, and click OK:

      Name

      Cloud_Traffic

      Source

      Branch Network

      Destination

      Cloud LAN1, 172.20.1.0/24 (Create new Address Object)

      Strategy

      Lowest Cost SLA

      Interface Preference

      HUB2 zone

      Required SLA Target

      HUB2_HC#1

      The SD-WAN rule is created.

  5. Define an SLA target for internet traffic:
    1. Under Performance SLA, and click Create New. The Create New Performance SLA pane opens.
    2. Set the following options, and click OK:

      Name

      Internet

      Server

      1.1.1.1

      Participants

      port1, port2

      SLA Targets

      • Latency threshold: 300
      • Jitter Threshold: 55
      • Packet Loss Threshold: 3%

      The SLA target is created.

  6. Create a rule named Internet Traffic:
    1. Under SD-WAN Rules, and click Create New. The Create New SD-WAN Rule pane opens.
    2. Set the following options, and click OK:

      Name

      Internet_Traffic

      Source

      Branch Network

      Destination

      all

      Strategy

      Lowest Cost SLA

      Interface Preference

      WAN1, WAN2

      Required SLA Target

      Internet

      The SD-WAN rule is created.

  7. Click OK to save the SD-WAN template.