Im troubleshooting this connection ============ |
Hi @HeshanDeeyagaha,
Your first troubleshooting step should be collecting a packet flow debug while generating the affected traffic. Feel free to share the output here if needed.
Example:
diagnose debug enable
diagnose debug flow filter addr 10.15.1.1
diagnose debug flow show function-name enable
diagnose debug flow show iprope enable
diagnose debug flow trace start 5
Useful resources:
https://docs.fortinet.com/document/fortigate/6.2.15/cookbook/54688/debugging-the-packet-flow
Hi,
As Boris mentioned, first run debug flow where we will see exactly which policy route and which route was selected. Then, for further analysis we will need a bit more details about the config and routing.
get router info routing-table all
diag firewall proute list
diag sys sdwan service
diag sys sdwan member
Thanks Guys, will get this on non-prod and see check for what you have asked.
I think I have your wording confused. You say VPN traffic never hits your router (the pfsense box)? If that's the case then pfsense would just need a static route to know how to route traffic to get to the VPN network.
Sir I think you are commenting on the wrong thread. no VPN, No pfSense
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1737 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.