Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
joh
New Contributor

Connect 3 point

Hello 

I have a headquarters with fortigate 40f

I have connected it with 2 local business with a sonicwall and cisco. 

Now from headquarters i see the local business but they can't see them.

So how can i talk the local business?  I

Thanks 

3 REPLIES 3
MethodNet
New Contributor II

Do you want the 2 locations to talk to each other?

If so, do you have a VPN between the two locations, or do you want them to route through the HQ?

If you want to route through the HQ, you will need to set up your VPNS like this:

 

Cisco Site -> HQ:  Cisco site needs to have the remote networks listed as the HQ network and the Sonicwall network.  The HQ needs to list the local networks as the HQ network and the Sonicwall network.

 

Sonicwall Site -> HQ: Sonicwall site needs to have the remote networks listed as the HQ network and the Cisco network.  The HQ needs to list the local networks as the HQ network and the Cisco network.

 

HQ Site:

1. Need a policy from Sonicwall Tunnel to Cisco Tunnel allowing Sonicwall network to Cisco network.

2. Need a policy from Cisco Tunnel to Sonicwall Tunnel allowing Cisco network to Sonicwall network.

Michael D
Michael D
hbac
Staff
Staff

Hi @joh,

 

I believe you are referring to IPsec tunnels. Sonicwall and Cisco should have a direct IPsec tunnel to communicate between. If you want traffic to go through the FortiGate, you need to check phase2 selectors and firewall policies to allow traffic between tunnels. 

 

Regards, 

mle2802
Staff
Staff

Hi @joh,

You can refer this document for spoke-hub VPN to achieve this goal

https://docs.fortinet.com/document/fortigate/6.2.0/new-features/679957/ipsec-vpn-wizard-hub-and-spok...

Regards,
Minh

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors