Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
ScottyT
New Contributor II

Overlay as a Service

Is anyone out there using FortiCloud Overlay as a Service? Why do I feel like I'm the only customer. 

 

We are replacing our old firewalls with Fortinet, and I'm trying to deploy about a dozen firewalls with the Overlay as a Service connecting the offices via SD-WAN. Unfortunately, the IPSec tunnels at two of the locations (my datacenter and HQ) keep going offline and won't come back. It seems like there's something out of whack with whatever configuration is being pushed from the cloud. No one in support seems to understand the overlay cloud service, and the team they escalate to internally never get back to us.

 

We ran a debug and the cloud service IP addresses aren't responding to the VPN requests. I've blown away the entire config and it works fine for a week or so, and then things start to fall apart again. Seems really unstable. 

2 REPLIES 2
Stephen_G
Moderator
Moderator

Hello,

 

Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.

Stephen - Fortinet Community Team
ScottyT
New Contributor II

Hi - support and the Overlay cloud team finally got back to us. They provided a temporary fix, which seemed to work and brought the tunnels back online. They had me change the ISP cost on one of the ISP links in the Overlay as a Service, and that forced some kind of an update to push down to the firewalls, bringing the IPsec tunnels back online. But I'm still fearful that the Overlay as a Service Cloud isn't a fully reliable solution. 

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors