Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
PauloP
New Contributor III

Admin Distance for VPN automatic Routes

Hi, I set up a VPN hub/spoke structure with a Dialup server and some Remote branches (all appliances are Fortigate 60B). Surprisingly, I observed an Automatic Static Route that appeared on the Dialup server pointing to Remote network, with an Administrative Distance =1. I did not see this feature in the documentation. On the remote site I could not see any automatic route (I put a manual one). My question is: how to change this AD to a suitable value? The VPN function is to serve as backup and I need to set an AD greater than normal route. Regards,
1 Solution
PauloP
New Contributor III

I found out how to set AD. In ipsec phase1-interface, using CLI, there is a parameter " distance" that controls the value of AD. It works. The problem is solved.

View solution in original post

2 REPLIES 2
PauloP
New Contributor III

I found out how to set AD. In ipsec phase1-interface, using CLI, there is a parameter " distance" that controls the value of AD. It works. The problem is solved.
Creepstian

This article solved my problem, I just wanto to add; to see all the configuration you need to use

show full-configuration

because all the default configuration wont be display.

Christian Granados Pre-Sales Coordinator.

Westcon Group, Inc.

Christian Granados Pre-Sales Coordinator. Westcon Group, Inc.
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors