Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Umesh
Contributor

Ipsec over sdwan tunnel interface not able to ping

Hi expert,

 

Over the few hours I am trying to ping tunnel interface ip address from HQ to BR, unable to ping even after enabling ping at interface leve. please guide me what to do next. please rerfer the snapshot.

C *> 1.1.1.1/32 is directly connected, PrimaryVPN1
S *> 1.1.1.2/32 [5/0] via PrimaryVPN1 tunnel 10.10.30.2, [1/0]
C *> 2.2.2.1/32 is directly connected, SecondaryVPN2
S *> 2.2.2.2/32 [5/0] via SecondaryVPN2 tunnel 10.10.40.2, [1/0]

S *> 1.1.1.0/30 [5/0] via B2HO_VPN1 tunnel 10.10.10.2, [1/0]
C *> 1.1.1.2/32 is directly connected, B2HO_VPN1
S *> 2.2.2.1/32 [5/0] via B2HO_VPN2 tunnel 10.10.20.2, [1/0]
C *> 2.2.2.2/32 is directly connected, B2HO_VPN2

 

Note policy is already created all and all over tunnle interfaces.

 

tunnle interface ip.JPG

 

 

 

1 REPLY 1
AEK
SuperUser
SuperUser

Hi Umesh

Did you add the tunnel addresses to phase 2 selector and to the firewall rules?

AEK
AEK
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors