Hi, we use FortiClient and IPSEC vpn to connect from home to work. We can access the resources on 192.168.100.0 (main office lan) but we also require access to resources on 192.168.200.0 and 192.168.2.0
There is a site-to-site VPN connecting 192.168.100.0 and 192.168.200.0 and 192.168.100.0 and 192.168.2.0
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
@GraemeM
You can fix it by adding more subnets under phase2 selectors:
Adding source and destination subnets to IPsec VPN phase 2 configurations | FortiGate-7000 5.4.9 | How to configure IPsec remote access with... - Fortinet CommunityFortinet Document Library
Also remember to allow traffic on firewall policy from ipsec interface to internal port that points to the other subnets
Hi, sorry i typically use the GUI and not the CLI. If my site-to-site ip address range is 192.168.2.0/24 and 192.168.200.0/24 and the IP address I pickup after i log into the VPN is 192.168.101.90 is these (see pic) where it goes?
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1713 | |
1093 | |
752 | |
447 | |
231 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.