remove the current virtual router assignment from the interface.
If the firewall supports multiple virtual
systems and that capability is enabled, select a virtual system
(vsys) for the interface or select
a new vsys.
Select a security zone for the interface,
to define a new zone. Select
remove the current zone assignment from the interface. The virtual
SD-WAN interface and all of its interface members must be in the
same security zone, thus ensuring the same security policy rules
apply to all paths from the branch to the same destination.
Select the Layer 3 Ethernet interfaces (for
Direct Internet Access [DIA]) or virtual VPN tunnel interfaces (for
hub) that constitute this virtual SD-WAN interface. The firewall
virtual router uses this virtual SD-WAN interface to route SD-WAN
traffic to a DIA or a hub location. The interfaces can have different tags.
If you enter more than one interface, they must all be the same
type (either VPN tunnel or DIA).