Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Not applicable

Route-based vs Policy based VPN

What is the difference between the two, and what is the best way to decide which one to use?
2 REPLIES 2
doshbass
New Contributor III

Route based - sets up the VPN tunnel as a virtual interface. You can apply policies to and from an interface as normal. Policy based VPN, requires you to create policies to teh external interface using teh ENCRYPt or IPSEC option. to mind mind Interface based are much more logical and controllable than policy based. Interface mode is the new way - policy mode is the old way. IMHO of course
Still learning to type " the"
Still learning to type " the"
matchan
New Contributor

agree with doshbass, but would just add that I' ve found interface mode to be easier if you are trying to connect to a 3rd party device, particulary snapgear and pix, whereas policy based are very simple to create to other fortigates. ymmv Matt
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors