Skip to main content
ChristopheD
New Member
November 3, 2016
Question

VPN IPSEC with multi vlan

  • November 3, 2016
  • 0 replies
  • 1935 views

Hi,

Firstly, sorry for my English... :(

We have two Fortigate 310B in cluster mode.

Wan is on port 2, and lan is on port 1.

We have multi vlan on port 1.

[ul]
  • Vlan id 101 is server range (10.1.1.0/24 GW 10.1.1.1 fw)
  • vlan id 103 is ip phone range (10.1.3.0/24 GW 10.1.3.1 fw)
  • Vlan id 120 is PC lan (10.1.20.0/23, GW 10.1.20.1 fw)[/ul]

    In my VPN IPsec config, i define a range for client (10.1.21.150 -> 10.1.21.200, mask 255.255.254.0)

    When i connect, i ping adresse in 10.1.20.0/23, but no in other range.

    The Gateway for my connection is automaticaly 10.1.21.151

    How to change?

     

    Thak's for your help

     

    • Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
      Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.