Accend Networks San Francisco Bay Area Full Service IT Consulting Company

Adding IPSec VPN as a Software SD-WAN Member on FortiGate (Pre-7.0) with Performance SLA for Health Checks

Introduction

Welcome! In this tutorial, we’ll walk through how to add an IPSec VPN tunnel as a Software SD-WAN member on a FortiGate firewall (pre-7.0 firmware), and how to configure a Performance SLA for tunnel health checks.

About the Author

I’m Paula Wong, CEO and Founder of Accend Networks, a full-service IT solutions provider specializing in cybersecurity, networking, and cloud services – from power to protection.

Certifications:

C|EH Master, CCIE #13062, PCNSE, C-10/C-7 #1086962, Oracle OCI, AWS Certified Cloud Practitioner

With over 30 years of industry experience, including hands-on roles in Fortune 500 environments, I help clients streamline secure and scalable network infrastructure.

Step 1: Remove Active References to the IPSec Tunnel

Before you can use an existing VPN tunnel as an SD-WAN member, you must remove any active configuration references to it.

  • In this example, we’re using a VPN tunnel named Iperf
  • If your tunnel shows “4” in the references column, click that number to see where it’s in use.
  • Remove those references so the tunnel can be added to an SD-WAN zone.

Step 2: Create an SD-WAN Zone and Add the VPN Tunnel

Once the tunnel is cleared of active bindings:

  • Go to Network > SD-WAN Zones
  • Create a new SD-WAN zone (e.g., IPSec_Zone)
  • Add the Iperf tunnel (or your tunnel name) as a member

Step 3: Configure Performance SLA for Health Checks

Now we configure a Performance SLA to monitor the health of the IPSec tunnel.

  • Go to Network > Performance SLA

  • Add a new SLA and point the server IP to the remote end of the VPN tunnel

  • Protocol options can include Ping, HTTP, DNS, or custom probes

Note: The WAN link field is optional, but specifying it can improve traffic steering.

Step 4: Create an SD-WAN Rule

Finally, create a rule to define how traffic uses the tunnel based on SLA:

  • Set source and destination

  • Define SLA targets (e.g., latency, jitter, packet loss)

  • Apply load balancing logic (e.g., use WAN1 as primary, WAN2 as backup)

When the SLA thresholds are violated, FortiGate will dynamically reroute traffic based on your configuration.

Summary

That’s it! You’ve now:

  1. Cleared references from an existing IPSec tunnel
  2. Added it as a member to your SD-WAN zone
  3. Configured a Performance SLA for health monitoring

Created traffic rules for dynamic failover and load balancing

Contact

Need help with FortiGate SD-WAN, IPSec, or Performance SLA design?

Reach out:

Written By :

Paula Wong, Senior Network Security Engineer, CCIE Security and Routing & Switching, Certified Ethical Hacker - Master

0 0 votes
Article Rating
Subscribe
Notify of
guest

299 Comments
Newest
Oldest Most Voted
Inline Feedbacks
View all comments
hometogel alternatif
hometogel alternatif
11 hours ago

I’ll definitely come back and read more of your content.

hometogel alternatif
hometogel alternatif
11 hours ago

Very useful tips! I’m excited to implement them soon.

omutogel
omutogel
16 hours ago

I love how clearly you explained everything. Thanks for this.

omutogel
omutogel
16 hours ago

Your content always adds value to my day.

sogoslot
sogoslot
3 days ago

Such a thoughtful and well-researched piece. Thank you.

sogoslot
sogoslot
3 days ago

I enjoyed every paragraph. Thank you for this.

nadimtogel
nadimtogel
3 days ago

I enjoyed your perspective on this topic. Looking forward to more content.

nadimtogel login
nadimtogel login
3 days ago

Your writing style makes complex ideas so easy to digest.

congtogel login
congtogel login
3 days ago

So simple, yet so impactful. Well written!

congtogel alternatif
congtogel alternatif
3 days ago

This content is really helpful, especially for beginners like me.

spotbet
spotbet
4 days ago

I appreciate your unique perspective on this.

spotbet
spotbet
4 days ago

Your tips are practical and easy to apply. Thanks a lot!

mulantogel
mulantogel
4 days ago

Thank you for making this topic less intimidating.

mulantogel alternatif
mulantogel alternatif
4 days ago

I never thought about it that way before. Great insight!

yoktogel
yoktogel
4 days ago

What a helpful and well-structured post. Thanks a lot!

yoktogel alternatif
yoktogel alternatif
4 days ago

Thanks for sharing your knowledge. This added a lot of value to my day.

polaslot138
polaslot138
4 days ago

I love how practical and realistic your tips are.

polaslot138 login
polaslot138 login
4 days ago

I appreciate the depth and clarity of this post.

opaltogel
opaltogel
5 days ago

This article came at the perfect time for me.

opaltogel
opaltogel
5 days ago

This gave me a whole new perspective on something I thought I already understood. Great explanation and flow!

sogoslot
sogoslot
5 days ago

Thank you for making this topic less intimidating.

sogoslot alternatif
sogoslot alternatif
5 days ago

I love how well-organized and detailed this post is.

congtogel
congtogel
6 days ago

I wasn’t expecting to learn so much from this post!

slot online
slot online
6 days ago

You really know how to connect with your readers.

congtogel
congtogel
6 days ago

You have a real gift for explaining things.

slot online
slot online
6 days ago

I appreciate the honesty and openness in your writing.

slot online
slot online
6 days ago

Thank you for offering such practical guidance.

slot online
slot online
6 days ago

I’ll definitely come back and read more of your content.

slot online
slot online
6 days ago

I love how clearly you explained everything. Thanks for this.

slot online
slot online
6 days ago

I wasn’t expecting to learn so much from this post!

slot online
slot online
6 days ago

This topic really needed to be talked about. Thank you.

slot online
slot online
6 days ago

I’ve read similar posts, but yours stood out for its clarity.

slot online
slot online
6 days ago

Your articles always leave me thinking.

slot online
slot online
6 days ago

You have a real gift for explaining things.

slot online
slot online
6 days ago

You’ve sparked my interest in this topic.

slot online
slot online
7 days ago

This post cleared up so many questions for me.

slot online
slot online
7 days ago

I appreciate how genuine your writing feels. Thanks for sharing.

slot online
slot online
7 days ago

This post gave me a new perspective I hadn’t considered.

slot online
slot online
7 days ago

You clearly know your stuff. Great job on this article.

slot online
slot online
7 days ago

You bring a fresh voice to a well-covered topic.

slot online
slot online
7 days ago

You write with so much clarity and confidence. Impressive!

slot online
slot online
7 days ago

This was very well laid out and easy to follow.

slot online
slot online
7 days ago

Thanks for sharing your knowledge. This added a lot of value to my day.

slot online
slot online
7 days ago

I hadn’t considered this angle before. It’s refreshing!

slot online
slot online
7 days ago

This was really well done. I can tell a lot of thought went into making it clear and user-friendly. Keep up the good work!

slot online
slot online
7 days ago

This content is gold. Thank you so much!

slot online
slot online
7 days ago

Thank you for being so generous with your knowledge.

slot online
slot online
7 days ago

Thank you for being so generous with your knowledge.

slot online
slot online
7 days ago

This was very well laid out and easy to follow.

slot online
slot online
7 days ago

Keep writing! Your content is always so helpful.