I have a question:
We have Fortigate on AWS, and the WAN IP is delivering the AWS public IP:
However, a LAN IP is configured on the Fortigate interface:
To set up an IPSEC VPN, I obviously have to point to “WAN IP” 54, but how will this communication work if the WAN interface has a LAN IP? Do I need to enable the secondary IP as 54..?
Hello @renanrdrigues ,
No need to configure a public IP address as a secondary IP. Because AWS natting this public IP address to a private IP address. Because of that, you can create ipsec tunnel with your public ip address. But you should configure nat-t in ipsec configuration.
User | Count |
---|---|
2551 | |
1356 | |
795 | |
646 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.