Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
ravindrakumar
New Contributor

Fortigate VPN Tunnel - AWS

Hi There,

 

I have recently created 3 VPN Tunnels for production, UAT and FSS Environment, now the issue i am facing is production and UAT working fine but the issue with FSS as this one having the same subnet of 10.0.0.0/16 similar to UAT i am trying to fix the issue but its not working only one Tunnel FSS or UAT working at a time.

 

But i will to run them at the same time. Appreciate any help.

 

Regards,

Ravindra

Ravindra Kumar
Ravindra Kumar
3 REPLIES 3
Anthony_E
Community Manager
Community Manager

Hello,


Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.


Thanks,

Anthony-Fortinet Community Team.
Anthony_E
Community Manager
Community Manager

Hello,

We are still looking for someone to help you.

We will come back to you ASAP.


Thanks,

Anthony-Fortinet Community Team.
Anthony_E
Community Manager
Community Manager

Hi,

 

To configure a VPN tunnel between a FortiGate and AWS:

  1. Create a New IPsec Tunnel: Navigate to `VPN -> IPsec Tunnel`. - Select `Create New`, enter a name for the tunnel, choose `Custom`, and click `Next`.
  2. Configure Remote Gateway: Set the Remote Gateway to `Static IP Address`. - Enter the gateway IP address provided by AWS. - Set the Local Interface to the FortiGate WAN interface. - Enable NAT Traversal if necessary (enabled by default).
  3. Authentication Settings: Enter a Pre-shared Key. - Ensure IKEv1 is enabled and set the Mode to `Main`.
  4. Phase 1 Proposal: Set Encryption to `AES128` and Authentication to `SHA1`.
    1.  Choose DH Group `2`.
    2.  Set Keylife to `28800` seconds. 5. **Phase 2 Selectors:**
    3.  Enter the respective local and remote network details.

 

For IKEv2 configuration, ensure you have the necessary AWS identifiers and configure two tunnels for redundancy. Adjust encryption and authentication settings as needed for your security requirements.

Anthony-Fortinet Community Team.
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors