Skip to main content
Jond
New Member
March 12, 2021
Question

Firewall connecting to remote host via IPSEC

  • March 12, 2021
  • 2 replies
  • 2549 views

Hi there,

 

I've got a firewall and want to direct log traffic to a FAZ across an IPSEC VPN.

 

How on earth do I get it working.  Is there some way of making a rule from 'the firewall itself' to go through the VPN?

 

Sure I've read something but can't find it.

 

Cheers

Jon

    2 replies

    lobstercreed
    New Member
    March 12, 2021

    This might help you:  https://docs.fortinet.com/document/fortigate/6.4.2/administration-guide/848980/self-originating-traffic 

     

    It may be desirable to use something like what I have and use SD-WAN rules to manipulate the traffic:

     

    config log fortianalyzer setting set source-ip 10.12.99.245 set interface-select-method sdwan end

    jimthecanadian
    New Member
    March 16, 2021

    config log fortianalyzer setting

     

    set the source IP you want the traffic to use.  That's what did it for me

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!