site to site vpn does not work behind ADSL Router
- August 3, 2017
- 3 replies
- 10770 views
Hi,
I created a site-to-site VPN between two Fortigate 100D (site1) and 60E (site2), I have on each site a Technicolor TG799 v2 ADSL router. Both Fortigate are implemented in NAT / Route mode behind the ADSL routers.
I used IPSec wizard on both sites to create the VPN, and I chose the option "This site is behind NAT". The configuration is bine correct as I followed exactly the cookbook guides and the videos Fortinet.
Unfortunately the VPN does not work, the tunnel status on both site is still "Inactive", I went on IPSec Monitor >> right click >> Bring UP but still does not work. I have the impression that the two fortigate failed to establish the ipsec tunnel. Please help me if you see where then I have the problem?
Is what I need to create a port forword on ADSL routers for a specific port? If so what is the port used by IPSec vpn?
You find in attach the diagram of my network.
I created another VPN Client with SSL, I opened port 443 on my ADSL router, all working correctly for my SSLVPN client.
thank you
