Change the subnet on one (or both) sides. More work now leads to less pain later.
My two cents.
<aside>Many times I have stressed the point that you should always avoid using default network subnets in your setups. The common subnet ranges (192.168.0.x/24, 192.168.1.x/24, 192.168.2.x/24 for example) are going to be used by less knowledged (or just plain lazy) folks and down the road you'll eventually run into some other party using this common scheme and have this same situation in triplicate. Changing the least impacted side at this time will save many headaches down the road when you do need to connect with a third entity using 192.168.1.x/24.</aside>
Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com
Well we use that internal only so no problem so far.
We just bought a shop that already has this net and we first of all wanted some vpn to there before we rebuild their lan ;)
In fact I couldn't get it to work using Keith's Howto in the Cookbook. Either he is missing something in there or it does not work that way any more in 5.4 or newer at all.
However I finally found the KB Article: http://kb.fortinet.com/kb/microsites/search.do?cmd=displayKC&docType=kc&externalId=FD33872&sliceId=1... and this works fine even with FortiOS 5.4.x .
cheers
Sebastian
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1740 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.