IPsec Remote Access VPN connected but RX packets remain 0 (intermittent)
Hello everyone,
I'm experiencing an intermittent issue with an IPsec Remote Access VPN.
The VPN tunnel establishes successfully (IKE and IPsec SAs are up), and the client authenticates successfully. However, in some cases:
- TX (sent) packets increase normally.
- RX (received) packets remain at 0 bytes / 0 packets.
- No internal resources are reachable.
One interesting observation is that the issue depends on the ISP. If I switch to another Internet provider, the VPN works immediately.
A few months ago, I had a similar issue that was resolved by setting the MTU to 1350, but this workaround no longer solves the problem.
I have reproduced the same behavior with:
- FortiGate 7.4.x
- FortiGate 8.0.0
This makes me suspect an MTU, fragmentation, or ISP-related issue, but I'm not sure where to investigate next.
Has anyone encountered a similar behavior?
