Skip to main content
Newbie77
New Member
July 9, 2015
Question

IPSEC VPN failover

  • July 9, 2015
  • 3 replies
  • 10969 views

Has anyone setup a failover for IPSEC VPN connections within a Fortigate?  I'm running firmware version 5.2.3 and have two ISPs. 

 

Any help will be much appreciated.

 

Thanks

3 replies

gschmitt
New Member
July 10, 2015

You mean "In case ISP1 failes try to establish the IPSec connection through ISP2"?

Newbie77
Newbie77Author
New Member
July 10, 2015

Yes.  I researched and saw that Cisco ASAs have the ability to do that.

Sushilk
New Member
July 10, 2015

I would suggest you to configure the route based VPN.

Create a IPSEC policy for each ISP (assuming remote site also having two ISP) and play with routing.

 

 

If Peer side VPN device has just one ISP then configure your Fortigate device  as backup IPSEC interface only (You need to do it via CLI).

 

Regards,

Sushil