Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
loicparker
New Contributor

Multiple ipsec remote access vpn with single IP

I have one fortigate 100E, one public IP

I have multiple subnet for multiple services

I done 3 Ipsec Remote acces VPN on it and each VPN reach a specific network.

My issue is that only one VPN is work, the two other throught an error

 

Thank you for your help

2 Solutions
Julien87
Contributor II

Hello,

 

the remote access vpn is in dialup mode?

If yes you could use aggressive mode and peerID. You can read the detail in the follow link :

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-use-Peer-IDs-to-select-an-IPSec-dia... 

 

 

best regards,

 

 

Julien

View solution in original post

Yurisk
Valued Contributor

What @Julien87  said is the only way to separate IPSec dial up clients into different security rules. Users in their Forticlient will have to set their specific Peer ID (just  a string) and it will work seamlessly, tested in real life.

 

Yuri
https://yurisk.info/ blog: All things Fortinet, no ads.


All opinions are mine only.

View solution in original post

3 REPLIES 3
Julien87
Contributor II

Hello,

 

the remote access vpn is in dialup mode?

If yes you could use aggressive mode and peerID. You can read the detail in the follow link :

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-use-Peer-IDs-to-select-an-IPSec-dia... 

 

 

best regards,

 

 

Julien
Yurisk
Valued Contributor

What @Julien87  said is the only way to separate IPSec dial up clients into different security rules. Users in their Forticlient will have to set their specific Peer ID (just  a string) and it will work seamlessly, tested in real life.

 

Yuri
https://yurisk.info/ blog: All things Fortinet, no ads.


All opinions are mine only.
loicparker
New Contributor

Thank you @Julien87 @Yurisk , i solve my problem