Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Umesh
Contributor

Not able to delete Ipsec tunnel created by SDWAN

Dear All,

 

I was trying to delete Ipsec tunnel which was earlier configured with SDWAN.

 

The below procedure which I have used during the deleting all the reference from IPsec tunnel.

 

1. Tunnel was member of SDWAN Zone. I have removed the tunnel interface from SDWAN ZONE.

2. Deleted static route.

3. Deleted phase 2 selector.

Next I was unable to delete tunnel. What I have observed during the tunnel. After all the deleting references. tunnel itself moved into default SDWAN ZONE which was created for WAN interfaces (Virtual-WAN-ZONE).

 

My question is which tunnel moved into default virtual-wan-zone after deleting the references.

 

 

Thank you.

 

1 REPLY 1
kaman
Staff
Staff

Hi Umesh,

When deleting all the references from the IP Sec tunnel, one reference for the SD-WAN interface is left that has the delete option greyed out.

To delete the tunnel, remove it from the SD-WAN zone by navigating under Network -> SD-WAN, select the tunnel, and then, delete it

If the delete option is greyed out, make sure that the tunnel is removed from all SD-WAN rules and Performance SLA.

Once deleted in the SD-WAN zone, it gives the option to delete the tunnel.

Please refer to the document below for more information:


https://community.fortinet.com/t5/FortiGate/Technical-Tip-IPSec-tunnel-under-SD-WAN-zone-not-deletin...


If you have found a solution, please like and accept it to make it easily accessible to others.


Regards!

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors