About This Architecture
Starlink SD-WAN failover architecture with FortiGate firewall orchestrates three WAN links—primary fibre (WAN1), Starlink primary satellite (WAN2), and Starlink additional satellite (WAN3)—to ensure continuous connectivity and load balancing. Traffic flows from Internet/Cloud/SaaS through ONT fibre modem and dual Starlink terminals into the FortiGate firewall, which applies WAF/IPS rules and routes packets across SD-WAN zones based on performance SLA thresholds. Internal network segments—VLAN 10 (Corporate), VLAN 20 (Guest/IoT), VLAN 30 (Servers)—connect via core switch with dedicated access points and server infrastructure. This architecture eliminates single points of failure by automatically failover from fibre to satellite when primary WAN degrades, critical for remote sites and disaster recovery scenarios. Fork this diagram on Diagrams.so to customize WAN policies, add additional VLANs, or integrate with your FortiGate management console templates.