Created on
‎11-09-2023
06:23 AM
Edited on
‎09-24-2025
07:05 AM
By
Jean-Philippe_P
Description | This article describes issues with multiple dial-up IPsec VPNs on the HUB after upgrading to v7.0.13 or v7.2.6. |
Scope | FortiGate. |
Solution | When having a FortiGate act as a HUB/Dialup Server with multiple spokes/dial-up clients and the clients have overlapping phase2 selectors, for example, 0.0.0.0/0, it is possible to experience flapping issues. Currently, the solutions would be:
config vpn ipsec phase2-interface
Technical Tip: Use of PeerID and LocalID in IPsec VPN between two FortiGates Technical Tip: How to configure local ID in FortiClient version 5.2.x
Related documents: Technical Tip: dynamic vpn add-route and subnet overlap |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.