Additionally, I would create blackhole routes for each RFC1918 private subnet that you use. This prevents a WAN session to be created for VPN traffic in case the VPN breaks down. Makes tunnel recovery a lot faster. More info and batch command file for this on the forums ("blackhole").
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.