Description | This article describes how to solve the IPSec negotiation issue between Fortigate and WatchGuard. |
Scope | FortiGate, WatchGuard. |
Solution |
If FortiGate is behind the NAT device, it needs to be tweaked on IPSec setting if trying to connect with WatchGuard.
The WatchGuard device will have the error 'Received ID did not match the configured remote gateway endpoint'.
config vpn ipsec phase1-interface set localid <public IP address of FGT> next
On Watchguard, under the Remote Gateway section, there is this setting to enter the public IP address of FortiGate: 'Specify the gateway ID for tunnel Authentication'. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.