Description | This article describes how to deal with the IKE negotiation error between FortiGate and Sonicwall. |
Scope | FortiOS v7. |
Solution |
CLI commands:
To stop the debug processes in the end, press 'Ctrl+C' and enter 'diagnose debug disable'.
Solution:
On FortiGate:
On Sonicwall:
Solution: (If FortiGate is behind the NAT device).
On FortiGate:
Note: Before v7.6.3, using an IPv4 address as a Peer ID was not supported for IPsec VPN tunnels. This feature is available starting from v7.6.3 but will not be backported to earlier versions. If upgrading to v7.6.3 is not possible, it is recommended to configure the remote peer to use either FQDN or KEYID as the ID type. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.