Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
kemanpana
New Contributor

IPsec and hotels

Hey forum. Real life issues has risen in our short time with fortigate and IPsec.

Boss man had issues connecting to the VPN while at a car dealer. Tried on the old ssl Palo Alto and connected right away.

How is the issue of many places block IPsec traffic? I think we had our marketing guy get blocked at hotel but he didn’t complain until he came back.

2 REPLIES 2
Jirka1
Contributor III

kaman
Staff
Staff

Hi kemanpana,

Please run the below commands and verify if the traffic was coming to FortiGate firewall or not. Please share the below commands output also.

CLI1:
diagnose vpn ike log filter rem-addr4 x.x.x.x <----- x.x.x.x is the client public IP
diagnose debug application ike -1
diagnose debug enable


diagnose debug disable ---------to disable the debugs


CLI2:
diagnose sniffer packet any " host <PublicIP of the Host getting disconnected> and port (500 or 4500) " 6 0 l


https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-troubleshoot-Intermittent-IPsec-Dia...


Regards,
Aman

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors