Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
HS08
Contributor

Local gateway VPN Tunnel

Actually in the VPN why function of Local Gateway? What pro and cons if we enable/disable this?

1 Solution
nevan
Staff
Staff

Local Gateway in VPN = the local device’s public IP/interface that terminates the VPN tunnel and identifies itself to the peer.

Enabled-

Pros: Explicit tunnel endpoint, predictable routing, supports multi-WAN and failover.

Cons: Less flexible if IP changes; needs updates after WAN changes.

Disabled-

Pros: Simpler setup, adapts to dynamic IPs.

Cons: Less control, may cause issues in complex/multi-interface setups.

View solution in original post

3 REPLIES 3
nevan
Staff
Staff

Local Gateway in VPN = the local device’s public IP/interface that terminates the VPN tunnel and identifies itself to the peer.

Enabled-

Pros: Explicit tunnel endpoint, predictable routing, supports multi-WAN and failover.

Cons: Less flexible if IP changes; needs updates after WAN changes.

Disabled-

Pros: Simpler setup, adapts to dynamic IPs.

Cons: Less control, may cause issues in complex/multi-interface setups.

HS08
Contributor

I think its better to enable the local gateway right?

nevan

In general it is.

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors