Created on 10-31-2019 02:51 AM Edited on 08-27-2024 02:11 AM By Jean-Philippe_P
Description
This article demonstrates the deployment of OCVPN (Overlay Controller Virtual Private Network).
OCVPN is meant to be really fast and easy to configure because it will automatically create:
In this setup, there is the following:
The aim is to be able to communicate between these 2 subnets by using an IPsec VPN.
Both FortiGates need to be registered on the support.fortinet.com portal (FortiCare).
Scope
FortiGate.
Solution
Go on the GUI under VPN -> Overlay Controller VPN of the first FortiGate VM01.
Note: The IPsec-based OCVPN service has been discontinued and licenses for it can no longer be purchased as of FortiOS 7.4.0. GUI, CLI, and license verification support for OCVPN have been removed from FortiOS. Upon upgrade, all IPsec phase 1 and phase 2 configurations, firewall policies, and routing configurations previously generated by the OCVPN service will remain. Alternative solutions for OCVPN are the Fabric Overlay Orchestrator in FortiOS 7.2.4 and later, and the SD-WAN overlay templates in FortiManager 7.2.0 and later.
This information has been included in FortiOS 7.4.4 release notes: Remove OCVPN support.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.