Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Pkay983
New Contributor

Reaching VLAN over SSL VPN on a different firewall

Hello,

 

we have the following constellation:

 

Location 1 -> Fortigate 200

Location 2 -> Fortigate 200

IPSEC VPN between for routing traffic from vlan 72 location 1 to vlan 73 location 2 

 

This works well.

Now our colleagues want to use ssl vpn from home to get also access to vlan 72 in location one and vlan 73 in location two.

 

I configured ssl vpn on location 1 fortigate and it works for getting access to vlan 72. I also setup a policy to vlan 73 but didn't worked so far. 

 

Any idea or is this technically not possible and I need to configure a second ssl vpn on location 2 firewall?

 

Thanks for you help :)

1 Solution
mle2802

Hi @Pkay983,

On location 2, packet arrived on VPN tunnel but it dropped on policy 0 which means there is no policy allow traffic. Can you please check there is policy allow 192.168.111.1 from "vpn-to-loc1" to 192.168.2.1 on local interface?

Regards,
Minh

 

View solution in original post

10 REPLIES 10
Pkay983

Hi Minh,

 

yes I have a route and I also have the policies configured on both sides.

 

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors