Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
mumbles202
New Contributor II

Setup backup vpn connection to HQ FGT

I currently have a firewall at HQ with a static ip and a dial-up vpn configuration for a remote site (remote site initially had a dhcp WAN address) and then that site is set to tunnel all traffic back through HQ.  If I'd like to move this a configuration where that remote site (which now has a static WAN ip and is also getting a secondary ISP) is able to connect to the HQ FGT using either of it's 2 ISPs and still do a route all vpn, is this the best link to follow:

 

https://docs.fortinet.com/document/fortigate/6.2.9/cookbook/432685/manual-redundant-vpn-configuratio...

 

and if so, would I to also include the settings in the section "Creating a Backup IPsec Interface"

10 REPLIES 10
Toshi_Esumi

Not sure if different admin distance would work for policy routes. Because if the distance is different, only highest ones show up in routing table.

You can see that behavior for both AD and priority in "get router info routing-table all".

Labels
Top Kudoed Authors