VPN Phase 2 reconnection issue
Hello Everyone,
I have a strange behavior with 3 of my VPN Tunnels. The Tunnels itself are working fine when the Phase 2 connection is up. Problem I am facing the Phase 2 can only be activated/keept alive from my site. After about 10 minutes without traffic the Phase 2 is disconnected and the Branch is not able to reestablish a Phase 2 connection with my Fortigate. My workaround for the moment is to Ping the Branch every 5 Minutes to keep the Tunnel alive.
I have configured an incoming NAT for the Subnet on my Site and used IP Pools for outgoing traffic to the VPN Tunnel to mask my internal IP addresses.
I have done some Traces and debugging on the VPN but when the Phase2 is disconnected I don't see any incoming traffic from the Branch even if they try to ping my internal Servers, so I don't think it is related to the NAT I do on my site. But I have several other VPNs without NAT and they work fine.
We also Enabled Autokey Keep Alive and Auto-negotiate on botch ends. The Firewall in the Branches are Checkpoint and Sonicwall.
Could be a similar Problem to this unsolved issue https://forum.fortinet.com/tm.aspx?m=118085 But none of us is located or connected to AWS
