Cybersecurity Forum

This forum is for all security enthusiasts to discuss Fortinet's latest & evolving technologies and to connect & network with peers in the cybersecurity hemisphere. Share and learn on a broad range of topics like best practices, use cases, integrations and more. For support specific questions/resources, please visit the Support Forum or the Knowledge Base.

a_ymeri
New Contributor II

IPsec VPN based on hub and spoke topology

 

I need an implementation scenario for an IPsec VPN based hub and spoke topology with 100 spokes.

all nodes are FortiGate and I want to use only one phase1 (Hub configuration--remote gw as Dialup User) 

 

 

What happens if some of the spokes are in the same subnet? What to do in this case if I can't change the remote subnets?

Has anyone tested, any similar scenario?

 

 

 

Adriana Ymeri 

………………………………

COMMUNICATION PROGRESS sh.p.k.  Tiranë, Albania

mob: +355 696012014 | email a.ymeri@commprog.com

1 REPLY 1
Abdulaziz_Alatar
New Contributor

Hello Adriana,
You enroll with conflict . you need use overlapping subnet (NAT)..