Hi,
We just moved from Cisco to Fortigate and we are having issues migrating some VPNs.
The image below shows a bit on how they should be.
Pretty much those VPNs have 1 subnet from our side and multiple subnets on the client side.
We have to NAT our internal network to our Public IP (so all internal connection arrive in the client with the public ip and not internal IP).
We created the VPN using Local Address our subnet and Remote Address a Groups Object with multiple objects one for each subnet.
We created a IP Pool as Overload with our public IP and created the policy allowing access from our network to this group with networks and enabled the NAT using our IP Pool.
The VPN goes UP but we can only access one network in the Group Object. This is happening in multiple cenarios with the same config.
Any idea of what we are doing wrong and what could be done to fix it ?
User | Count |
---|---|
2546 | |
1354 | |
795 | |
643 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.