Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
nsumner
New Contributor

Fortigate IPSEC tunnel allow gateways to communicate

I want to set the DNS on my fortigate to the interal DNS in a second site. But although I have a working IPSEC VPN tunnel the fortigate itself is unable to access the remote subnet. How can I resolve this issue?

2 REPLIES 2
rwpatterson
Valued Contributor III

Open a policy on the remote tunnel that allows the interface IP into the DNS server. The FGT comes across with that IP, not the LAN on that unit.

 

HTH

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
MikePruett

Yeah, sounds like a policy issue (if the tunnel is actually building properly)

Mike Pruett Fortinet GURU | Fortinet Training Videos
Labels
Top Kudoed Authors