Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
khalilbouzaiene1
Contributor

Ipsec Tunnel problem

Hey everyone,

Currently, I'm dealing with a situation where I have two sites, one equipped with a Fortigate firewall and the other with pfSense. My goal is to establish an IPsec tunnel between them. However, the version of Fortigate I'm working with is 7.0.12, which only supports the DES encryption algorithm. Additionally, for authentication, we only have SHA-256, 384, and 512 available.

On the other hand, pfSense supports different encryption algorithms. Given these limitations and the requirement to maintain the current version of Fortigate without updates, what would be the best solution to address this issue?

Thanks in advance for any insights or recommendations you can provide.

PS: It's crucial that we maintain the current version of Fortigate and cannot update it

 

2 REPLIES 2
khalilbouzaiene1
Contributor

this is encryption algorithme in the fortigate : 

ipsec1.png

and this the encryption algorithme  in the pfsense : 

ipsec2.png

ozkanaltas
Valued Contributor III

Hello @khalilbouzaiene1 ,

 

I found some articles about your problem. Can you check the low encryption status with this command? "get system status | grep "License Status"

 

https://community.fortinet.com/t5/FortiCache/Technical-Tip-Low-Encryption-LENC-device-FAQ/ta-p/19032...

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Option-to-set-Algorithm-and-ban-cipher-is-...

 

 

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW
If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors