so obviously I am an idiot cause I cannot get this to work.
I want to be able to ping via dns name across the ipsec tunnel, but it will not work, even though I have my local DNS set.
so google tells me I need to set the domain suffix, but I cant make it work, can someone tell me what I am doing wrong?
remote90d # config vpn ipsec phase1-interface
remote90d (phase1-interface) # show config vpn ipsec phase1-interface edit "vpntocorporate" set interface "wan1" set comments "VPN: vpntocorporate (Created by VPN wizard)" set wizard-type static-fortigate set remote-gw xxx.xxx.xxx.xxx set psksecret ********* next end
remote90d (phase1-interface) # edit vpntocorporate
remote90d (vpntocorporate) # set domain mydomain.com
command parse error before 'domain' Command fail. Return code -61
remote90d (vpntocorporate) #
You must set the DNS Suffix in your DHCP configuration! Thats a Client Setting!
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1787 | |
1117 | |
768 | |
447 | |
242 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.