Fortinet white logo
Fortinet white logo

GCP Administration Guide

Creating the external LB

Creating the external LB

Note

GCP web console does not support creating external load balancer (LB) frontends forwarding multiple protocols nor stateful failover options. For these advanced features, see Deploying FortiGate-VM HA with external and internal LB (GCloud CLI).

To create the external LB:
  1. Go to Network Services > Load balancing and click CREATE A LOAD BALANCER.
  2. In TCP Load Balancing, click START CONFIGURATION.
  3. Leave all settings at their defaults and click CONTINUE.
  4. Name your LB and select the region where FortiGates are running.
  5. Configure the backend:
    1. Under Backends, create a new backend. Select the first instance group and click DONE.
    2. Click ADD BACKEND and add the second instance group to the backend list.
    3. From the health check dropdown list, select Create a health check option.
    4. Name your health check, configure it to use TCP protocol and port 8008, and click SAVE.
  6. Switch to frontend configuration and change Port to All.
  7. Click CREATE.

Note

Ensure that you allow connections from the Internet to the FortiGates by adding an appropriate cloud firewall rule in the external virtual private cloud network.

Creating the external LB

Creating the external LB

Note

GCP web console does not support creating external load balancer (LB) frontends forwarding multiple protocols nor stateful failover options. For these advanced features, see Deploying FortiGate-VM HA with external and internal LB (GCloud CLI).

To create the external LB:
  1. Go to Network Services > Load balancing and click CREATE A LOAD BALANCER.
  2. In TCP Load Balancing, click START CONFIGURATION.
  3. Leave all settings at their defaults and click CONTINUE.
  4. Name your LB and select the region where FortiGates are running.
  5. Configure the backend:
    1. Under Backends, create a new backend. Select the first instance group and click DONE.
    2. Click ADD BACKEND and add the second instance group to the backend list.
    3. From the health check dropdown list, select Create a health check option.
    4. Name your health check, configure it to use TCP protocol and port 8008, and click SAVE.
  6. Switch to frontend configuration and change Port to All.
  7. Click CREATE.

Note

Ensure that you allow connections from the Internet to the FortiGates by adding an appropriate cloud firewall rule in the external virtual private cloud network.