Load Balancing & Fault Tolerance Outbound Load Balancing and Failover (Auto Routing)
Label Algorithm Parameter
WAN1 Fixed Check WAN #1
WAN2 Fixed Check WAN #2
WAN3 Fixed Check WAN #3
Round-Robin 1:1:1 Round-Robin Enter “1” for WAN #1, WAN #2, and
WAN #3
Round-Robin 1:2:3 Round-Robin Enter “1” for WAN #1, “2” for WAN
#2, "3" for WAN #3
By Downstream By Downstream Check both WAN #1 and WAN #2
By Total By Total Traffic Check both WAN #2 and WAN #3
Defining filters for the following:
1.
The connections from 192.168.0.100 to FTP 210.10.10.11 are routed by the policy "WAN3". If WAN #3 fails, they
will be routed by policy "by Downstream".
2.
The connections from sub-network 192.168.10.0/24 to web servers on the internet are routed by the policy
"Round-Robin1:1:1".
3.
The connections from 192.168.0.100~192.168.0.200 to sub-network 192.192.0.0/24 on TCP port 8000 are routed
by the policy "WAN2". If WAN #2 fails, they will be routed by the policy "WAN3".
4.
The connections from the LAN to the Internet are routed by the policy "by Downstream". If both WAN #1 and WAN
#2 fail, they will be routed by "WAN3".
5.
The connections from 211.21.48.196 to FTP 210.10.10.11 are routed by policy "Round-Robin1:2:3".
6.
The connections from 211.21.48.195 to any SMTP server on the internet are routed by policy "WAN3". If WAN #3
fails, they will be routed by "WAN3". Note: In this case, the host at 211.21.48.195 will not be able to establish
connections to any SMTP server on the internet when WAN #3 fails, even though some other WAN links still keep
alive. For more details, refer to “Fail-over” policy.
7.
The connections from DMZ to the internet are routed by policy "By Downstream". If both WAN #1 and WAN #2 fail,
it will be routed by "By Total". Note: Usually, when both WAN #1 and WAN #2 fail, fail-over policy will take effect.
Somehow in the case above when both WAN links fail, then all traffic will be routed to WAN #3.
8.
The connections from an arbitrary host to the hosts at 60.200.10.1~60.200.10.10 will be routed by policy "WAN2".
If WAN #2 fails, they will be routed by "WAN1".
9.
The connections from an arbitrary host to any host on the Internet will be routed by the policy "by Downstream".
See also
l
WAN Link Health Detection
l
Configuring your WAN
l
Load Balancing & Fault Tolerance
l
Busyhour Settings
l
Using the web UI
122 FortiWAN Handbook
Fortinet Technologies Inc.