Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
renanrdrigues
New Contributor II

AWS delivering an internal IP address over the WAN

I have a question:

We have Fortigate on AWS, and the WAN IP is delivering the AWS public IP:

 

Captura de tela 2025-08-14 160109.png

 

However, a LAN IP is configured on the Fortigate interface:

 

Captura de tela 2025-08-14 160416.png

 

To set up an IPSEC VPN, I obviously have to point to “WAN IP” 54, but how will this communication work if the WAN interface has a LAN IP? Do I need to enable the secondary IP as 54..?

1 REPLY 1
ozkanaltas
Valued Contributor III

Hello @renanrdrigues ,

 

No need to configure a public IP address as a secondary IP. Because AWS natting this public IP address to a private IP address. Because of that, you can create ipsec tunnel with your public ip address. But you should configure nat-t in ipsec configuration.

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW
If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors