Hello. We have a customer who has two internet links, and he currently has an ipsec vpn tunnel with our company. We have only 1 internet link, is it possible for me to create another tunnel with the same settings as the tunnel in production by changing only the remote gateway in the configuration on my side?
I believe that on his side, you will need to create another route for this second link at a higher cost than the first, right?
Thanks all
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi maschimidt,
assuming you have site 2 site tunnel,
You can build another tunnel to customers secondary WAN with the same settings and monitor the Primary tunnel from backup tunnel.
That way Backup tunnel will only come up when primary goes down .
Thank You
Oscar
FWIW I prefer using a routing protocol and failure between the two VPN would happen automatically with no effort from the fw.admin
Ken Felix
PCNSE
NSE
StrongSwan
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.