FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
ssanga
Staff & Editor
Staff & Editor
Article Id 376932
Description

This article provides a workaround and solution for the error 'Duplicate Entry Found' which is encountered while configuring a backup IPSec VPN tunnel using the 'Custom IPSec Tunnel' option to an existing tunnel’s remote gateway address.

Scope

FortiGate v7.6.0.

Solution

When configuring a redundant IPSec tunnel to an existing tunnel’s remote gateway IP using the 'Custom IPSec Tunnel' option, the error 'Duplicate Entry Found' may appear.


Primary Tunnel:


PrimaryTunnel.png

 

Secondary Tunnel:


SecondaryTunnel.png

 

This occurs even when using a different WAN interface than the one assigned to the primary tunnel.

 

SecondaryTunneldiffinterface.png

 

This issue has been resolved in v7.6.1.

 

Workaround:

Use the option 'IPsec tunnel from template' when creating a backup tunnel.

 

OR

 

use the CLI commands.

 

General debug information required by FortiGate TAC for investigation:

  1. TAC Report: 'execute tac report'.
  2. Configuration file of the FortiGate.
  3. Fortinet Support Tool data: Troubleshooting Tip: Collect GUI slowness and errors debugs via Fortinet Support Tool