Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Vineeth_U
New Contributor

VPN Unable to Configure

Dear Team,

 

I am in the process of a VPN Implementation for one of the client. We have successfully configured Phase 1 but phase 2 is not coming up. I have configured this as Interface Based VPN. 

Client has given few destination IP Address those are Public IPs. I have few questions here, How do I configure this in the phase 2. How do I create policy for this. Is a Static Route required for this. ?

 

PLease help me to configure.

 

1 REPLY 1
emnoc
Esteemed Contributor III

yes and yes  ;)

 

1: a interface-vpn ( aka route-vpn ) needs a route

 

2: just stick the src-subnet(s) in your  phase2-interface cfg

 

3: if your new at lan2lan vpn, the vpn wizzard should be ideal

 

What's on the other end? ( SRX ASA  FGT  )

 

Do you have any subnet overlap issues ?

 

Do you need to SNAT the internal hosts?

 

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors