Fortigate resets VPN Tunnel connection
I do have an issue with a vpn tunnel were I need to do SNAT using a VIP (10.251.106.16 -> 10.49.15.73). The SYN packet is traversing the tunnel and I do get a SYN ACK back but my fortigate 60D (running v5.2.6,build711 (GA)) for some reson is reseting the connection generating a RST "from local". Any idea what is causing the Fortigate to reply with RST? Opiste direction is working fine (Gateway is some Cisco device).
Thanks! 1197.678400 internal1 in 10.49.15.73.54397 -> 10.251.106.16.9100: syn 1189762794 1197.678586 Tunnel out 10.49.15.73.54397 -> 10.49.146.86.9100: syn 1189762794 1197.720780 Tunnel in 10.49.146.86.9100 -> 10.49.15.73.54397: syn 1944898224 ack 1189762795 1197.720905 Tunnel out 10.49.15.73.54397 -> 10.49.146.86.9100: rst 1189762795 id=20085 trace_id=302 func=print_pkt_detail line=4373 msg="vd-root received a packet(proto=6, 10.49.146.86:9100->10.49.15.73:55573) from Tunnel. flag [S.], seq 3383165015, ack 1693452540, win 8192" id=20085 trace_id=302 func=resolve_ip_tuple_fast line=4432 msg="Find an existing session, id-00005e26, reply direction" id=20085 trace_id=303 func=print_pkt_detail line=4373 msg="vd-root received a packet(proto=6, 10.49.15.73:55573->10.49.146.86:9100) from local. flag
