Hey forum. Real life issues has risen in our short time with fortigate and IPsec.
Boss man had issues connecting to the VPN while at a car dealer. Tried on the old ssl Palo Alto and connected right away.
How is the issue of many places block IPsec traffic? I think we had our marketing guy get blocked at hotel but he didn’t complain until he came back.
Hi kemanpana,
Please run the below commands and verify if the traffic was coming to FortiGate firewall or not. Please share the below commands output also.
CLI1:
diagnose vpn ike log filter rem-addr4 x.x.x.x <----- x.x.x.x is the client public IP
diagnose debug application ike -1
diagnose debug enable
diagnose debug disable ---------to disable the debugs
CLI2:
diagnose sniffer packet any " host <PublicIP of the Host getting disconnected> and port (500 or 4500) " 6 0 l
Regards,
Aman
| User | Count |
|---|---|
| 2876 | |
| 1446 | |
| 843 | |
| 821 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.