Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Mohammed_Omar
New Contributor

Same IPSEC Dial Up VPN Multiple Listening interfaces

Hello,

 

When migrating from SSL VPN to IPSEC VPN, i can't choose multiple listening interfaces for my IPSEC dial up vpn tunnel.

 

How can i do that correctly ?

4 REPLIES 4
funkylicious
SuperUser
SuperUser

multiple ipsec dialup tunnels, for each interface would be necessary i guess.

"jack of all trades, master of none"
"jack of all trades, master of none"
Mohammed_Omar
New Contributor

I would like not to do multiple ipsec dialup tunnels. any best practice solutions ?

Toshi_Esumi
SuperUser
SuperUser

Haven't tested and don't have time to test before my vacation, but an idea is to set two VIPs from both interfaces to forward IPsecs(UDP 500/4500) to a loopback interface, and make sure the policy doesn't block ESP. Again, just an idea.

Toshi

Mohammed_Omar
New Contributor

Seems like a good solution Toshi thank you.

I will look in the internet how to do the ESP you are talking about.

Whenever you or anybody can, can you test in the fortigate 7.6.3 version (or latest) ? thank you

 

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors