Hi,
I have an issue like, we have HQ and different branches also we setup the site to site connection policy inorder to access our application in HQ. the site to site is up and both side is communicating but we have another application in which the ip is in different series and the same application i can access from local network but not pinging through site to site.
Please help.
Thank you
As in many posts over years in this forum, if some subnets don't work over vpn you need to check below:
1. if phase2 selectors include the subnets in question unless you use the default 0/0<->0/0, which include all subnets.
2. if the source side has proper routes toward the tunnel
3. if the policy(ies) is limiting access.
If they're fine, you need to use a regular debugging tools like "diag sniffer", "diag debug flow" to find out the breaking point.
Thank you so much.. second point was the issue its working now
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1740 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.