Created on
09-21-2025
11:12 PM
Edited on
09-24-2025
08:29 AM
By
Stephen_G
Description |
This article describes the issue of being unable to enable the DHCP server in IPsec phase2 settings on a FortiGate and addresses how to resolve this issue, which involves disabling the mode configuration in phase1 settings. |
Scope | FortiGate. |
Solution |
To configure the DHCP server for the IPsec VPN tunnel interface on FortiGate. The users connecting to dial-up IPsec VPN will be assigned an IP address from the defined IP range.
config system dhcp server
To resolve the issue of being unable to enable the DHCP server in IPsec phase2 settings, perform the following steps:
next
Related article: Technical Tip: DHCP IP address reservation with Dial up IPsec VPN IPsec VPN with external DHCP service - FortiGate administration guide |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.