Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
ftltech
New Contributor

1 way Site to Site VPN query

Hi

Have followed this link to setup a S2S between a 60F (local location) and a Draytek Vigor (remote location)

https://www.draytek.com/support/knowledge-base/5203

 

I have got the tunnel up successfully and can access resources to/from both locations.

 

I want to make this 1 way now so only the local location can access resources at the remote location

 

Is it isas  simple as only creating the local to remote Policy and not bothering with a remote to local policy?

 

I have disabled the Remote to Local policy on the 60F after following that guide and that seems to have achieved what i want and stops communication from Remote to local whilst still allowing Local to Remote connectivity,  just checking this is all i need to do?

 

Many Thanks

 

Many Thanks

1 Solution
tgauvey_FTNT
Staff
Staff

Hello,

 

Yes, you are correct. All you need to do is create a firewall policy allowing the traffic that you want to allow. Any traffic attempts that do not match that policy or any other policy on your FortiGate will be denied.

Tommy Gauvey

View solution in original post

2 REPLIES 2
tgauvey_FTNT
Staff
Staff

Hello,

 

Yes, you are correct. All you need to do is create a firewall policy allowing the traffic that you want to allow. Any traffic attempts that do not match that policy or any other policy on your FortiGate will be denied.

Tommy Gauvey
ftltech
New Contributor

Thankyou for the clarification Tommy

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors