Skip to main content
New_Member
New Member
February 22, 2016
Question

Draytek Vigor & Fortigate - VPN IPSec site to site

  • February 22, 2016
  • 1 reply
  • 19827 views

Dear all,

 

I'm stuck config VPN site to site between fortigate 300c and Draytek 2950.

In Draytek:

Dial out IPSec Tunnel IKE phase 1 : 3DES_MD5_G5 IKE phase 2:  3DES_MD5 Main ID protection

in Fortigate:

Phase 1:  Main ID Protection 3DES_MD5 DH Group 2,5 Keylife 28800 Phase 2: 3DES_MD5 DH Group 5 Keylife 3600

adready setup policy accept IPSEC

I can not bring this tunnel up.

Please help!

Thanks

 

 

 

    1 reply

    ede_pfau
    SuperUser
    SuperUser
    February 22, 2016

    ike 0:vpn:61: remote address 115.78.161.0 does not match configuration address 115.78.166.114, drop
    You should check that first.

    New_Member
    New Member
    February 22, 2016

    Dear Ede

    i also check again config on the both devices .

    No problem for the configuration.

    any advice on this!

    Many thanks!!!

    ede_pfau
    SuperUser
    SuperUser
    February 22, 2016

    Come on, you've got to provide more info than this! Do you really expect to come anything out of this with only breadcrumbs? Jeez.

     

    Who is 115.78.116.0, who is 115.78.166.114, what are the 2 public IP addresses exactly (one DT, one FGT)? Screen shots of the DT config page? Config of the FGT (as text), phase1 will do for now.