FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
ssteo
Staff
Staff
Article Id 247605
Description This article describes how to troubleshoot the status of the TACACS+ server connected via IPsec VPN is showing 'Server unreachable'.
Scope FortiGate.
Solution

Assume below are the scenario:

 

FortiGate LAN IP (192.168.10.99) --- IPSEC --- TACACS+ server (192.168.5.6)

Local subnet: 192.168.10.0/24

Remote subnet: 192.168.5.0/24

 

The TACACS+ server that hosts the remote side is 192.168.5.6.

FortiGate on the local side had configured the primary server and the connection status is showing 'Server unreachable'.

 

ssteo_0-1677637486634.png

 

To solve the issue, configure source-IP under the TACACS+ server setting:

 

ssteo_1-1677637898663.png

 

After configuring the source IP, check the status again on GUI and it will show 'OK'.

 

ssteo_2-1677638092534.png
Contributors