Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
dadya06
New Contributor

Strange domain controller one way sync problem fortigate s2s vpn

Hi,

We have this system admin team who is complaining that whenever our VPN tunnel is shifted from one internet provider to another the active directory sync will work one way for example from domain controller A to B but not from B to A. Any object created or deleted on B will not reflect on A but any changes on A will reflect on B. Very strange thing as no change except the underlay ISP link.

All traffic flows inside VPN tunnel in both working and non working cases.

10.0.0.0.1 192.168.1.254
1 REPLY 1
AEK
SuperUser
SuperUser

Hi Dadya

Try enable logs on the related rules and on the implicit deny rule as well, then check if any related traffic is blocked.

Also check if your phase2 selector include the required subnets from both sides.

AEK
AEK
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors