Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
carlos_zelaya
New Contributor

Proxy ID in 0.0.0.0/0.0.0.0

Hi I have a Interface IPsec VPN configured in two Firewall Fortigate, the VPN is Ok an the traffic pass witout problems, but the VPN is unstable and when is down is very hard to make it up. The case is, in the monitor for the VPN the Proxy ID source and destination is in 0.0.0.0/0.0.0.0. is this normal???
cavzz
cavzz
1 REPLY 1
rwpatterson
Valued Contributor III

This is normal. If you know the IP subnets on either or both sides, you can narrow down the scope of the IP range. (192.168.254.0/24, for example) If you are using a routing protocol like OSPF or RIP, you need to use the 0.0.0.0 selectors. From the CLI, you can add the command
set auto-negotiate enable
in the phase 2 configuration. This will automatically bring the tunnel up if it drops without your intervention.

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors