Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Joseph-M
New Contributor III

IPSEC tunnels not working when specified the Local Gateway

After upgrading our FortiGate to v7.4.0 from 6.4.7 (with optional upgrade path 6.4.9 then 6.4.11 ...)

 

All our IPSEC tunnels are down and phase1 and phase2 are down. At the same time all other config seems to be in place...

2023_06_20_13_48_04_FortiGate_FortiGate_and_23_more_pages_Work_Microsoft_Edge.png

We found out that as soon as we choose local gateway "Specify" (our secondary WAN IP) not "Primary IP" the tunnel is down and no communication is happening between our and client FW (all WAN IPs are from one ISPs GW). We can ping clients IP.

 

Proposals and configuration of P1 and P2 are correct, as I mentioned as soon both sides chooses gateway (our primary IP) tunnel works. Policies are in place, traffic is accesable from both sides when tunnel is up. Routes created.

 

What could be the possible issues where to look. I tried to find similar issues on forums but no success. Would appreciate any ideas and help.

 

 

1 Solution
Joseph-M
New Contributor III

Ticket were created for FortiSupport.

View solution in original post

10 REPLIES 10
Joseph-M
New Contributor III

Ticket were created for FortiSupport.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors