Fortigate to Fortigate DialUp IPSec VPN
anyone could shed me the reasons why I encountered this kind of unexpected behavior during ipsec configurations.
Topology
Workstation---L2/L3---Fortigate (Static)----Internet---- (Private)Fortigate---L2/L3---Workstation
Concern 1. Both Tunnels are UP, but unable to ping both ends. Given the fact that routing and firewall polices are properly defined
Solution: Assigned network address on both Quick Mode Selector.
But why there some instances without defining network addresses on both QMS both ends able to ping with each other?
Concern 2. Both Tunnels are UP, but unable to ping both ends. Given the fact that routing and firewall polices are properly defined
Solution: HQ Firewall(Public), enable NAT in Firewall Policy (VPN Virtual Interface---LAN), pings starts to work for both ends
Regards
