Skip to main content
kemanpana
New Member
December 21, 2025
Question

IPsec and hotels

  • December 21, 2025
  • 2 replies
  • 238 views

Hey forum. Real life issues has risen in our short time with fortigate and IPsec.

Boss man had issues connecting to the VPN while at a car dealer. Tried on the old ssl Palo Alto and connected right away.

How is the issue of many places block IPsec traffic? I think we had our marketing guy get blocked at hotel but he didn’t complain until he came back.

2 replies

kaman
Staff
Staff
December 22, 2025

Hi kemanpana,

Please run the below commands and verify if the traffic was coming to FortiGate firewall or not. Please share the below commands output also.

CLI1:
diagnose vpn ike log filter rem-addr4 x.x.x.x <----- x.x.x.x is the client public IP
diagnose debug application ike -1
diagnose debug enable


diagnose debug disable ---------to disable the debugs


CLI2:
diagnose sniffer packet any " host <PublicIP of the Host getting disconnected> and port (500 or 4500) " 6 0 l


https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-troubleshoot-Intermittent-IPsec-Dial-up-VPN/ta-p/344361


Regards,
Aman