Skip to main content
Mohammed_Omar
New Member
May 23, 2025
Question

Same IPSEC Dial Up VPN Multiple Listening interfaces

  • May 23, 2025
  • 4 replies
  • 1077 views

Hello,

 

When migrating from SSL VPN to IPSEC VPN, i can't choose multiple listening interfaces for my IPSEC dial up vpn tunnel.

 

How can i do that correctly ?

4 replies

funkylicious
SuperUser
SuperUser
May 23, 2025

multiple ipsec dialup tunnels, for each interface would be necessary i guess.

"jack of all trades, master of none"
Mohammed_Omar
New Member
May 23, 2025

I would like not to do multiple ipsec dialup tunnels. any best practice solutions ?

Toshi_Esumi
SuperUser
SuperUser
May 23, 2025

Haven't tested and don't have time to test before my vacation, but an idea is to set two VIPs from both interfaces to forward IPsecs(UDP 500/4500) to a loopback interface, and make sure the policy doesn't block ESP. Again, just an idea.

Toshi

Mohammed_Omar
New Member
May 26, 2025

Seems like a good solution Toshi thank you.

I will look in the internet how to do the ESP you are talking about.

Whenever you or anybody can, can you test in the fortigate 7.6.3 version (or latest) ? thank you