Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Jamanzo
New Contributor

IPSec Tunnels Issues

What's up people, sorry for my imperfect English but I will do my best to make myself understood, sorry in advance.

Just a week ago I changed the way some branches were connected to my matrz. I was using openvpn on my ubuntu machines and from matrix I could access the machine via terminal to do updates, install packages, see how the network connection was and so on.

Now, I switched to using the VPN of Fortigate, I saw some documentation but I still do not understand if you can do something similar to see the ip of the computers of my branches, because if before I saw their individual ip from openvpn, now I only see the ip of my forti, which is my gateway.

Because of this, I can't access my computers as the ip is the same for each and every one of them (my forti's).

I wanted to know if anyone knows a way to correct this and be able to simulate what I had before but with the fortigate VPN.

Part of the problem is that also from my branches to matrix I can see my equipment by Ip but not from my matrix to my branches. I hope not to bother too much and I appreciate your support because I reviewed a lot of documentation but I do not give the detail.

Translated with DeepL.com (free version)

2 REPLIES 2
funkylicious
SuperUser
SuperUser

hi,

is this what you are looking for ?

https://docs.fortinet.com/document/fortigate/7.6.3/administration-guide/221346/ipsec-monitor

https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-add-IPsec-monitor-on-dashboard-widg... 

in this dashboard if you go on the table headers there a little wheel that allows you to enable more columns.

https://docs.fortinet.com/document/fortigate/7.6.1/administration-guide/221346/ipsec-monitor#:~:text.... or from the cli in the first link

"jack of all trades, master of none"
"jack of all trades, master of none"
Jamanzo

Hi, I checked the links you sent me and it is not the information I would need, rather, I already have all the IPSec part.

In my IP Tunnel from matrix to branches I have NAT enabled and from branches to Matrix I don't and only this way I can work with my services and in my branch I can see everything from my matrix but not from vice versa.

And so, I only see the IP of the computers that connect as by the IP of the gateway of my matrix I do not see the IP that each computer has.

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors