Dynamic routes for FortiCli IPsec VPN
Hello,
I have a IPsec VPN for FortiClient created the past year, it was working fine with split-tunnel
It seems that about 15 days ago, when the quarantine started in Argentina, for some unknown reason, the clients can ping to the VOIP Router but can NOT ping to other VOIP devices in the same subnet
We dont know what could we do to modify this behavior
For example:
ping 172.20.35.1 -> succesful
ping 172.20.35.160 -> failed
With traceroutes to both addressess, the first jump to 172.20.35.1 was 172.20.15.1 (IPsec VPN Interface IP Address in the Fortigate), but the first jump for 172.20.35.160 was my local gateway
So I checked the routes in the client side and I realliced that I just had a route for 172.20.35.1/32 instead of 172.20.32.0/22
This route is dynamically created, so Fortigate is giving this route to clients, where can I change this?
Thanks in advance.
Regards,
Damián
