Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Not applicable

Negotiate SA Error

New to Fortinet and VPN... I setup my Fortigate-60 similar to the example from the documentation: " Dialup-Client IPSEC VPN Example" When I try to connect I get the following error in my Forticlient log: status=negotiate_error msg=" Negotiate SA Error: protocol_id=1, notify_msg=18 (INVALID_ID_INFORMATION), ispi_size=0 " . When attempting to connect I' m behind a Linksys router with no firewall. Anyone know why I' m getting this or is their some better documentation I can follow to figure out this message? Thank' s
12 REPLIES 12
UkWizard
New Contributor

yes the same, or different, works for either. Using the same internal one as the internal clients makes browsing/dns/resolving much smoother as well. Prevents the Active Directory security problems as well.
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
Not applicable

Nice, wish they could just make it possible to use Fortinets internal DHCP for this so i can start using it.
Not applicable

In P2 on your remote user tunnel you need to enable dhcp-ipsec.
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors