Skip to main content
Deftone
New Member
December 8, 2021
Solved

IPSec native win client

  • December 8, 2021
  • 3 replies
  • 3650 views

Hi,

 

I just upgraded my 100E to 7.0.3 OS release.

 

What I see is that the dial up IPSec created with wizard for native win client doesnt work anymore?

I can connect but can not reach anything on the other side.

 

When I roll back to 6.4.8 everything is working fine again.

Any idea what has changed and how to resolve it? I have all policies set

Best answer by Anonymous_User

Hello,

 

It is not clear from your notes if you are using IKEv1 or IKEv2 with the Windows Native Client. But, I am assuming you are using L2TP over IPSec (which uses IKEv1) and that needs some manual configuration change as mentioned in the below document after upgrading device to FortiOS 7.0.3 

 

https://docs.fortinet.com/document/fortigate/7.0.3/fortios-release-notes/927994/l2tp-over-ipsec-configuration-needs-to-be-manually-updated-after-upgrading-from-6-4-x-or-7-0-0-to-7-0-1

 

 

3 replies

Contributor III
December 31, 2021

Hello,

 

It is not clear from your notes if you are using IKEv1 or IKEv2 with the Windows Native Client. But, I am assuming you are using L2TP over IPSec (which uses IKEv1) and that needs some manual configuration change as mentioned in the below document after upgrading device to FortiOS 7.0.3 

 

https://docs.fortinet.com/document/fortigate/7.0.3/fortios-release-notes/927994/l2tp-over-ipsec-configuration-needs-to-be-manually-updated-after-upgrading-from-6-4-x-or-7-0-0-to-7-0-1

 

 

Deftone
DeftoneAuthor
New Member
January 1, 2022

Thanks that helpded a lot.

I had policy's set from wrong source interface 

Contributor III
January 3, 2022

You're welcome

Thought Leadership. Security Summit. Thursday, November 12th, PGA National Resort, Palm Beach Gardens, FL.
Thought Leadership. Security Summit. Thursday, October 8th. Disney's Grand Californian Hotel & SPA, Anaheim, CA.