Fortinet white logo
Fortinet white logo

SD-WAN Deployment for MSSPs

Verifying configuration

Verifying configuration

Make sure that all the inter-regional IPSEC tunnels between the Hubs are up:

On the Edge devices, make sure they learn the summary route of the remote region via BGP:

Finally, the following CLI outputs are shown for reference from one of the Hub devices in our example, demonstrating the inter-regional connectivity:

Overlay:

site1-H1 # get ipsec tunnel list | grep SITE2

SITE2-H1_INET 100.64.3.1:0 0.0.0.0/0.0.0.0 0.0.0.0/0.0.0.0 up 2615

SITE2-H1_MPLS 172.16.3.5:0 0.0.0.0/0.0.0.0 0.0.0.0/0.0.0.0 up 2619

Routing:

site1-H1 # get router info bgp summary | grep 65002

10.201.0.3 4 65002 169 176 8 0 0 00:12:19 1

10.202.0.3 4 65002 170 171 7 0 0 00:12:21 1

site1-H1 # get router info routing-table bgp | grep SITE2

B 10.4.0.0/14 [20/0] via 10.202.0.3 (recursive via 10.202.0.3, SITE2-

H1_MPLS), 00:12:36 [20/0] via 10.201.0.3 (recursive via 10.201.0.3, SITE2-H1_INET), 00:12:36

Verifying configuration

Verifying configuration

Make sure that all the inter-regional IPSEC tunnels between the Hubs are up:

On the Edge devices, make sure they learn the summary route of the remote region via BGP:

Finally, the following CLI outputs are shown for reference from one of the Hub devices in our example, demonstrating the inter-regional connectivity:

Overlay:

site1-H1 # get ipsec tunnel list | grep SITE2

SITE2-H1_INET 100.64.3.1:0 0.0.0.0/0.0.0.0 0.0.0.0/0.0.0.0 up 2615

SITE2-H1_MPLS 172.16.3.5:0 0.0.0.0/0.0.0.0 0.0.0.0/0.0.0.0 up 2619

Routing:

site1-H1 # get router info bgp summary | grep 65002

10.201.0.3 4 65002 169 176 8 0 0 00:12:19 1

10.202.0.3 4 65002 170 171 7 0 0 00:12:21 1

site1-H1 # get router info routing-table bgp | grep SITE2

B 10.4.0.0/14 [20/0] via 10.202.0.3 (recursive via 10.202.0.3, SITE2-

H1_MPLS), 00:12:36 [20/0] via 10.201.0.3 (recursive via 10.201.0.3, SITE2-H1_INET), 00:12:36