All of my sites are currently using Fortigates. My main site has a Fortigate 80F. If I look at my site to sites to my main site, I see a weird peer ID that I didn't set. I didn't define a peerID/Local ID at all on the tunnels. Has anybody ever encountered anything like this? If so, why does this happen? FortiGate
Solved! Go to Solution.
If anybody else encounters something like this, per Fortinet support this is a bug in tunnels between FortiGate's that converts your peer IP to ASCII text and puts it in the Peer ID field.
It should be set using the "set localid" CLI option under the phase1-interface config.
Hi @mwatkins
Kindly share the phase-1 configuration for any one the spoke tunnel for which you are seeing the weird peer id.
Can you confirm is the peer id seen is matching the local id ?
Thanks
Hi Mwatkins,
Hope you are doing good.
Kindly let us know since when the issue started and the current fortios version running on. Also let us know if the peer id you are seeing is the ASCII code ?
Kindly share the phase-1 configuration of tunnel for which you are seeing the peer id and also the below command output:
#diagnose vpn ike gateway list name <name of the tunnel>
Regards,
Parteek
If anybody else encounters something like this, per Fortinet support this is a bug in tunnels between FortiGate's that converts your peer IP to ASCII text and puts it in the Peer ID field.
What is the version?
Toshi
Currently on 7.2.4
Thanks for the info. Now your post might be useful to many others.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1751 | |
1114 | |
766 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.