hello experts!
i want to configure a site-to-site VPN between 2 sites.
Site "A" has 2 ISP links and here I want to create 2 redundant IPSec tunnels with site "B".
so the problem is that site "B" has only 1 wan link and site "A" has 2 wan links. As shown above image. so how can i configure any help would be appreciated thanks.
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi
Please go through the below link for the Redundant IPSEC Tunnel using a single WAN connection
Regards,
Hi
Please go through the below link for the Redundant IPSEC Tunnel using a single WAN connection
Regards,
hi!
thank you for the help. one more thing i want to discuss here i tried the method and applied it successfully but one problem i face the downtime while the static ipsec route to 2nd backup tunnel it takes up to 2 minutes to up what will be the solution i want to decrease the downtime any help would be appreciated.
Then try IPSec aggregate instead. With this both sides are up and utilized all the time, and bringing down one side shouldn't cause much down time. Although below cookbook shows two circuits on both locations, it should work as well as long as one side has two circuits. I tested that way when 6.2 came out. I would assume it still work with like 7.0 - 7.4.
https://docs.fortinet.com/document/fortigate/6.2.15/cookbook/779544/ipsec-aggregate-for-redundancy-a...
Toshi
Hello,
You should check this doc.
https://docs.fortinet.com/document/fortigate/6.2.15/cookbook/779544/ipsec-aggregate-for-splunk training-redundancy-and-traffic-load-balancing
I hope this will help you.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1660 | |
1077 | |
752 | |
443 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.