Skip to main content
iteam
New Member
November 15, 2024
Question

VXLAN over IPSEC

  • November 15, 2024
  • 2 replies
  • 797 views

We use VXLAN over IPSEC with multiple VLANs and the current configuration is working.

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-VXLAN-over-IPsec-for-multiple-VLANs-using-software/ta-p/195488https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-setup-a-VXLAN-over-IPsec-deployment/ta-p/297665

Yesterday, I noticed that I make a mistake with the configuration of the ipsec interface.

FGT A  set remote-ip 172.16.0.2 255.255.255.0
FGT B  set remote-ip 172.16.0.1 255.255.255.255

Is it possible to define a /32 subnet for the remote ip on both sites ?

Thanks!

2 replies

funkylicious
SuperUser
SuperUser
November 15, 2024

Are you referring to the IPsec interface to define a /32 as a remote IP ?

"jack of all trades, master of none"
iteam
iteamAuthor
New Member
November 15, 2024

Yes, I would like to define a /32 IP as remote IP on both firewalls