FortiGate SD-WAN + EIGRP — Enterprise Network Simulation
A full enterprise network simulation built inside EVE-NG using two FortiGate firewalls, two Cisco IOS routers, managed switches, Linux clients, and an app server — connected through a virtual SD-WAN fabric with dynamic EIGRP routing and FortiGate security policies.
EIGRP Dynamic Routing
Configured EIGRP AS 10 on both Cisco routers across dual WAN links. Used passive interfaces on LAN-facing ports. Verified neighbor adjacency on Gi0/2 and Gi0/3, and confirmed EIGRP-learned routes with dual equal-cost paths.
FortiGate SD-WAN Configuration
Configured SD-WAN on both FortiGate units with a virtual-wan-link zone. Created Performance SLA probes using ICMP ping on both firewalls. Built SD-WAN rules using latency-based criteria. Verified via CLI: 0% packet loss, ~2ms latency, jitter under 2ms, MOS 4.4.
Firewall Policies
Defined bidirectional firewall policies on both FortiGate units covering LAN-to-Internet with NAT, LAN-to-Branch with AV and IPS profiles, and return Branch-to-LAN traffic.
End-to-End Throughput Testing — iperf3
Ran iperf3 between App-Server-HQ and Client-Branch1 across the full SD-WAN path. Confirmed 0% packet loss on ping. The 30-second TCP test achieved ~940 Kbits/sec with 3.38 MB transferred.
← Back to projects