Description | This article describes the step-by-step instructions for troubleshooting and resolving the 'Cache conflict with DDNS gateway <duplicated tunnel-name>' error in IKE debug, which prevents IPsec Site-to-Site (S2S) tunnels from establishing. |
Scope | FortiGate. |
Solution |
The 'Cache conflict with DDNS gateway <duplicated tunnel-name>' error in IKE debug indicates a conflict due to duplicate remote address IP usage. To resolve this issue, follow these steps:
If both tunnels require the same remote IP address, prepare to configure network overlay in the Phase-1 interface of the IPsec tunnel on both ends.
Related article: How to establish more than one IPsec tunn... - Fortinet Community
If the issue persists after completing the troubleshooting steps, raise a support ticket with TAC and provide IKE debug logs for further assistance.
For IKE debugs: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.