Skip to main content
martyyy
Explorer III
February 28, 2024
Question

Policy Base and Route Base VPNs

  • February 28, 2024
  • 1 reply
  • 826 views

Customer is currently connected via site-to-site IPsec VPN.

Customer is with Check Point which uses Policy Based VPN while on the Forti side, its Route Base.

I would like to know your opinions on this about having 2 different policies that could cause a packet drop randomly.
Can this happen?

Thanks

1 reply

Rajneesh
Staff
Staff
February 29, 2024

Hello @martyyy 

If the tunnel is up then,

 

One way we can isolate this issue by taking sniffer for the icmp packet on the FortiGate and you can match if the number of the packets send by the peer is received same on the FortiGate or not.