Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Not applicable

Site-to-site VPN with internet access passthrough?

So, I have a site-to-site VPN set up, and it' s working great when I want to go from the private network at site A to the private network at site B. No problems at all with the site-to-site VPN setup. Both site A and site B have a public IP address on the WAN1 interface, and the private network on the Internal interface. On the public side of site B' s FortiGate, I have another private network that I can route to from the private network at site B using the default gateway (FortiGate unit). I would like to also allow the private network at site A access to this second private network. I have tried policy based routing and interface based routing, looked at documentation from Fortinet and read examples of VPN to internet based routing here on the forums. Any suggestions?
12 REPLIES 12
Not applicable

OK, it appears to be working now! The static routing was correct, I needed a second 2nd Phase entry on the IPSEC side for the outside network. I hate it when it' s the little things that get ya. Thanks for all the help, rw! This was truely a learning experience... ungh.
rwpatterson
Valued Contributor III

You really want to work? Set up OSPF on the inter-FGT links!

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
Not applicable

Don' t laugh, I thought about it for a second. It won' t be long that I' ll have a second path between the offices. D' oh.
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors