Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Donglv_
New Contributor III

#VPN Site-To-Site. Issue When Create Multiple Tunnels

I have 3 Site A B C using FortiGate-VM (7.0 & 7.2). Three Site using 3 Ip Public for VPN gateway.

IPsec Tunnel between A <-> B is Up and running.

And I create another Tunnel A <-> C, But the Wizard show "Unable to setup VPN. The rollback process has encountered an error. Orphaned objects may still exist in the configuration database".

Screenshot 2023-03-17 130529.png

1 Solution
Donglv_
New Contributor III

Thanks. I found the problem. Bescause The Firewall policies have reach the maximum entries then the VPN tunnel cannot create more VPN policies.

View solution in original post

5 REPLIES 5
funkylicious
SuperUser
SuperUser

Have you tried converting into a custom tunnel and setting it up that way ?

"jack of all trades, master of none"
"jack of all trades, master of none"
Donglv_
New Contributor III

Yes I already setting in custom tunnel same as the first tunnel

 

Donglv_
New Contributor III

Thanks. I found the problem. Bescause The Firewall policies have reach the maximum entries then the VPN tunnel cannot create more VPN policies.

funkylicious

You can workaround that with enabling multiple interface policies from feature visibility to help with your lab.

"jack of all trades, master of none"
"jack of all trades, master of none"
Shob
New Contributor

Pls adv more bcs am also facing this issue and I have created only one policy

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors