Hi,
We have this system admin team who is complaining that whenever our VPN tunnel is shifted from one internet provider to another the active directory sync will work one way for example from domain controller A to B but not from B to A. Any object created or deleted on B will not reflect on A but any changes on A will reflect on B. Very strange thing as no change except the underlay ISP link.
All traffic flows inside VPN tunnel in both working and non working cases.
Hi Dadya
Try enable logs on the related rules and on the implicit deny rule as well, then check if any related traffic is blocked.
Also check if your phase2 selector include the required subnets from both sides.
User | Count |
---|---|
2609 | |
1390 | |
804 | |
664 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.