Please explain FortiManager VPN Star-Topology Hub-to-Hub interface
Hi,
Can someone please explain how FortiManager Star Toplogies work? And especially the reason for the Hub-to-Hub interface?
I've setup a VPN using Star Topology in FortiManager 5.6.1. FM deploys VPN Tunnels to both hubs and configures routes with prio-2 for routes at the Hub site pointing Hub-to-Hub (and vise-versa). This Hub-to-Hub tunnel is part of a vpnmgt_XXXX_mesh Zone which is not used anywhere.
I have my HQ network advertising RFC1918 (Private) IP ranges to my Fortigate Hubs using OSPF. The static routes configured for these VPN Hub-to-Hub interfaces are more specific. I do not want this Hub-to-Hub VPN to have a better match than my HQ network interface routes.
In short; I need a detailed description on how this VPN Star Topology is supposed to work (theory). Can anyone give me a link to a document that describes the theory behind the FM manged VPN's? The online help is useless for "the theory behind", just describes individual field settings.
Regards,
Erik
