Skip to main content
carlos_zelaya
New Member
April 6, 2009
Question

Proxy ID in 0.0.0.0/0.0.0.0

  • April 6, 2009
  • 1 reply
  • 5015 views
Hi I have a Interface IPsec VPN configured in two Firewall Fortigate, the VPN is Ok an the traffic pass witout problems, but the VPN is unstable and when is down is very hard to make it up. The case is, in the monitor for the VPN the Proxy ID source and destination is in 0.0.0.0/0.0.0.0. is this normal???

    1 reply

    rwpatterson
    New Member
    April 6, 2009
    This is normal. If you know the IP subnets on either or both sides, you can narrow down the scope of the IP range. (192.168.254.0/24, for example) If you are using a routing protocol like OSPF or RIP, you need to use the 0.0.0.0 selectors. From the CLI, you can add the command
    set auto-negotiate enable
    in the phase 2 configuration. This will automatically bring the tunnel up if it drops without your intervention.
    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!