Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
ahmed_habarab
New Contributor

Site To Site VPN

How i can Connect Two Site through vpn in different countries and one country block ipsec VPN if i am  using
site a and site b two public ip
or site a public  and site b dynamic

2 REPLIES 2
Sheikh
Staff
Staff

Hello @ahmed_habarab 

 

Have a look into this  Technical Tip: IPsec VPN between static and dynamic IP (FQDN) 

 

regards,

 

Sheikh

**If you come across a resolution, kindly show your appreciation by liking and accepting it, ensuring its accessibility for others**
AEK
SuperUser
SuperUser

I don't how this country blocks IPsec, but in case it blocks ESP (IP 50) or port 500 or 4500 then you may try change the port number and force NAT-T in IPsec config. You need to do it on both FortiGates.

config system settings
  set ike-port 5000
end

config vpn ipsec phase1-interface
edit tunnel-name
set nattraversal forced
end
end

I didn't try it but I hope it helps.

AEK
AEK
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors