How i can Connect Two Site through vpn in different countries and one country block ipsec VPN if i am using
site a and site b two public ip
or site a public and site b dynamic
Hello @ahmed_habarab
Have a look into this Technical Tip: IPsec VPN between static and dynamic IP (FQDN)
regards,
Sheikh
I don't how this country blocks IPsec, but in case it blocks ESP (IP 50) or port 500 or 4500 then you may try change the port number and force NAT-T in IPsec config. You need to do it on both FortiGates.
config system settings
set ike-port 5000
end
config vpn ipsec phase1-interface
edit tunnel-name
set nattraversal forced
end
end
I didn't try it but I hope it helps.
User | Count |
---|---|
2551 | |
1356 | |
795 | |
646 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.