Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
TamilStar
New Contributor

Data & Voice vlan in IPSEC VPN on Fortigate 60E

Hi all, I need some help with configuring VLANs on Fortigate 60E. Basically, I would like to setup Data & Voice vlan to go through site-to-site IPSEC VPN. I have setup a site-to-site IPSEC VPN tunnel between the remote site and the main site. The tunnel is up with no issues. Internal physical interface on the Fortigate 60E is set to IP 10.210.213.1/28, this can be my Data vlan, now I need to add Voice vlan 10.210.213.17/28. Can I add that as an interface->vlan type and choose the same physical interface as above that with a vlan id? And create the policies to allow vlan traffic through the vpn. Is this how you do it or am I missing something here? Thanks in advance.

2 REPLIES 2
srajeswaran
Staff
Staff

I think this will answer your questions.

 

https://community.fortinet.com/t5/Support-Forum/VLAN-config-for-data-and-voip-and-VPN-site-to-site-c...

 

 

Regards,

Suraj

- Have you found a solution? Then give your helper a "Kudos" and mark the solution.

tthrilok
Staff
Staff

hi TamilStar,

 

Thank you for the query!

You may follow the below article for creating the VLAN interfaces on the firewall:

>> https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-create-a-VLAN-tagged-interface-802-...

+ Please make sure your other end switch it tagging the data and voice traffic with different VLANs

+ Also please make sure your Voice VLAN network 10.210.213.17/28 is allowed in the phase2 VPN as local at your end 

+ Accordingly please create policies as well

 

Thank you!

Labels
Top Kudoed Authors