Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
JocyJohn47
New Contributor

Fortigate 40F VPN from Branch to HQ only for internet

i am try ting to config 40F to 40F using site to site vpn when HQ has Static WAN ip and Branch use Dynamic , after config the tunnel is still down , even i try Hub - Spoke same issue , in HQ the 40F setup is behind the main Firewall ( 60F ) , does it required any Port forwarding . i have go through several video and documents , the config show ok ,still the VPN not coming online . 

1 REPLY 1
funkylicious
SuperUser
SuperUser

this would be kind of hard to implement if your IPsec Hub / DialUP server FGT is behind another FortiGate and doesnt have a public IP assigned to it.

 

one option would be to create VIP on the 60F for 40F , like the one described here - https://community.fortinet.com/t5/FortiGate/Technical-Tip-Configuring-a-FortiGate-in-the-middle-for-... 

"jack of all trades, master of none"
"jack of all trades, master of none"
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors