I want to communicate two private networks over Internet, in one side, we have the Fortiwifi 60D and the other side, we have the Fortigate 500D
Please, Is it possible to make a VPN connection between a Fortigate 500D and FortiWifi 60D?
What is type of VPN is more suitable?: Route-based VPNs or Policy-based VPNs
Also, please, if you have an example of configuration by CLI in each Fortinet device, I'll appreciate it
Thanks in advance!
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi,
and welcome to the forums.
Yes, what you are planning is a common setup and easily done in FortiOS. It helps that both gateways are Fortigates (and it helps Fortinet :) but even with mixed brands an IPsec VPN is no problem at all.
The basic setup (often named "site to site VPN") is well documented with example settings, for CLI as well, in the "FortiOS Cookbook" available at http://docs.fortinet.com .
I strongly recommend with emphasis, no doubts and lots of good arguments the "route based" or "interface based" IPsec VPN. This is the default since FortiOS v4.3 and has a lot of advantages over the older "policy based" VPN.
Note that you can connect multiple LANs over just one Phase1 setup - just add one Phase2 for each distinct LAN. Fill out the Quick Mode identifiers in phase2 to make it unambiguous.
If you need further assistance feel free to post here. Just show us what you have configured so far and what the problem or the error message is. Often it is the last .1 % that makes or breaks an IPsec VPN.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1713 | |
1093 | |
752 | |
447 | |
231 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.