Skip to main content
Tutek_OLD
New Member
January 5, 2021
Question

Ipsec Interface mode with Mikrotik?

  • January 5, 2021
  • 3 replies
  • 5400 views

Hi'

I'm going soon to install on our network central fortigate UTM, it will be connected with some mikrotik routers using ipsec. 

Now I'm thinking how to connect it. As I have many networks, I wouldn't rather use legacy ipsec in tunnel mode.

If I choose ipsec in interface mode how then should I configure Mikrotik side, should it be GRE Ipsec Interface? Or maybe Ipsec interface mode can be configured only between Fortigate devices?

 

thanks for help.

    3 replies

    zvideoz
    New Member
    February 8, 2021

    Hi, I spent several days on this issue, but did not find a fully working solution. This is the hottest topic now in medium-sized business. Many people refuse to integrate FortiGate, so it is difficult to make friends with a MicrotiK.

    rwpatterson
    New Member
    February 8, 2021

    How you configure the Fortigate has nothing to do with the remote end. They cannot tell if the FGT is in interface or tunnel mode. A tunnel is a tunnel as far as they know. I have broken down FGT tunnels in tunnel mode and brought them back up in interface mode. The credentials are the same. The difference boils down to a check box during creation. (Oh, and the routing definition and policy is different too)

    emnoc
    New Member
    February 9, 2021

    To add, mikrotik vpn to fgt are well known. Take a look at this https://www.fastbit.ro/en/ipsec-site-to-site-vpn-between-fortigate-and-mikrotik/

     

    Also, ipsec is an open standard.

     

    Ken Felix

     

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!