Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
AhmadYousef
New Contributor

FortiGate IPsec on MPLS links

Hello,

Can fortiGate create IPsec tunnel on MPLS link with the following scenario:
FortiGate will be behind a WAN FW , the WAN firewall will be connected to MPLS ISP circuit.

 

4 REPLIES 4
Toshi_Esumi
SuperUser
SuperUser

It's depending on reachability each other between the MPLS interface IP and the detination IP on the opposite side over the MPLS network. Config wise, you can build an IPsec tunnel on any interfaces on a FGT.

Toshi

AhmadYousef

Thanks @Toshi_Esumi 

Rajneesh
Staff
Staff

Hello @AhmadYousef 

To create the IPSEC tunnel all matters is the reachability of the peer as mentioned by the @Toshi_Esumi .

 

Also you mentioned that your Local FortiGate is behind the WAN router so make sure that the IPsec VPN Nat traversal is enabled when doing the configuration.

For IPsec VPN Nat traversal you can refer the KB to understand its usage.

AhmadYousef

 

 

Thanks @Rajneesh 

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors