[FPM03] 11.211328 1-A3 in 192.168.10.5 -> 10.45.32.8: icmp: echo requestFrom below output, the packets are received but not transmitted:
[FPM03] 11.211360 tunnel1 out 192.168.10.5 -> 10.45.32.8: icmp: echo request
[FPM03] 11.220450 1-A3 in 192.168.10.5 -> 10.45.32.8: icmp: echo request
[FPM03] 11.220465 tunnel1 out 192.168.10.5 -> 10.45.32.8: icmp: echo request
[FPM03] 16.074098 1-A3 in 192.168.10.5 -> 10.45.32.8: icmp: echo request
[FPM03] 16.074111 tunnel1 out 192.168.10.5 -> 10.45.32.8: icmp: echo request
FGT (Vdom) # get vpn ipsec tunnel summaryThis issue occurs when IPSec is created on an interface that is tagged with VLAN ID-1 and ingress port is un-tagged.
'tunnel1' 10.1.1.1:0 selectors(total,up): 3/3 rx(pkt,err): 16006/0 tx(pkt,err): 88/0
# config vdom
edit vdom1
# config vpn ipsec phase1-interface
edit "tunnel1"
set npu-offload disable
end
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.