Skip to main content
Imadpre1
New Member
December 11, 2025
Question

Type of tunnels IPsec

  • December 11, 2025
  • 2 replies
  • 265 views

Hello everyone,
I'm requesting your assistance and suggestions regarding the type of IPsec tunnels.

In a hub and spoke architecture configured in ADVPN mode, we need to size the central hub that will be deployed within the hub.
Each spoke connects and initiates communication with the hub in VPN dial-up mode to subsequently enable spoke-to-spoke communication.
Are all of these tunnels destined for the hub considered site-to-site or client-to-site VPN tunnels in Fortinet terminology?

 

Thanks for your assistance 

Regards

2 replies

funkylicious
SuperUser
SuperUser
December 11, 2025
djp
Visitor III
December 19, 2025

It doesnt take much.  The HUB itself is just a "vpn orchestrator" you can get away with really any fortigate.  How many spokes do you have.

Make sure you set it up like we show here with BGP on Loopback: https://youtu.be/04BjjyMYEEk?si=glf86nLVIPtUmiD4

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!