Question
IPSec VPN behind DSL router
Hi all, I am trying to get an IPSEC connection between two Fortigate devices, where one is behind a static IP address and the other behind a DSL router and uses a dynamic DNS entry. The VPN will not come up, on the firewall with the static address (remote to me) the IPsec phase 1 error shown is
no matching gateway for new requestand on the local firewall that sits behind the DSL router the P-1 process appears to be successful (event log shows a success message for P-1). I have configured both sides according to the FortiGate IPSec VPN handbook, section Dynamic DNS Configuration, using policy-based security policies. Can anyone explain me what the error message means? When I enable debug on the remote end, the only error message I see for ike is :
gw negotiation timeout