Skip to main content
victormmh
New Member
November 25, 2016
Question

Problem IPSEC Tunnel with WAN LLB (only one way LAN connection)

  • November 25, 2016
  • 1 reply
  • 3460 views

Regards,

I kindly request your assistance.

 

Configuration:

 

Fortigate 60E _v 5.4.0 ----- IPSec Tunnel ---- Fortigate 60C _v5.2.4

Fortigate 60E have two wan connections (configured WAN LLB) 

 

IPSec Tunnel configuration: Interface Mode

between wan1 FG60E and wan1 FG60C

 

IPSec Monitor : IPSec Tunnel its Up

Fortigate 60C ping to remote subnet its successful, but Fortigate 60E to remote subnet not.

 

Static route created and IPV4 policy too. Order by Sequence (VPN policies first)

 

Thank you

    1 reply

    go4it
    New Member
    November 27, 2016

    Hi Viktormmh,

     

    Did you configured 2 policies on both sites ? (NO Nat)

    If yes, do a sniffer at 60E to see if your ping_request is entering the tunnel

    diag sniff packet <name_off_vpn> "host <ip_of_host_to_ping>"

     

    regards.

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!