From version 7.4.1, when there is ECMP routes, local out traffic may use a different route/port to connect out to the server.Workaround: for critical traffic which is sensitive to source IP address, specify the interface or SD-WAN for the traffic using the interface-select-method command for nearly all local-out traffic. For example:config system fortiguard set interface-select-method specify set interface "wan1"end