Hi all
I am setting up a vpn for the first time between a fortinet and anther device.
the subnet at both ends are the same, so I am wondering what I need to do to get around any conflicts which would occur when I join the 2 (or do I need to change one f them to a different subnet?
Hi Pandacho
It's possible to have overlapping subnets, but the configuration is a bit more complicated and personally I don't like this "hack". If you have the ability to change the subnets, in my opinion, I would do it. Otherwise check this http://cookbook.fortinet.com/vpn-overlapping-subnets/ Good luck
________________________________________________________
--- NSE 4 ---
________________________________________________________
Hi,
same subnet both side for vpn interconnexion it's never a good idea and may cause issue in phase 2 of your VPN.
According to what you say, you can perfom a source NAT of this subnet one side and use this new NAT pool or NAT address in the encryption domain.
Phi.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1751 | |
1114 | |
766 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.