Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Dmitrii
New Contributor

VPN site-to-site where the VLAN is on cisco

Good afternoon! I ask for help in explaining how to transfer a VLAN from one Fortigate to another.
Network diagram:
fortigate 1:
network 172.16.50.2
Cisco vlan 50-60
dhcp is linked to ip addresses
192.168.51.254/24
192.168.52.254/24
192.168.53.254/24
192.168.54.254/24
fortigate 2
network 192.168.102.254/0
vcenter 192.168.102.10
has a task so that servers on vcenter can receive and have ip addresses with 1 fortigate.
Site-to-site is currently configured
network 192.168.102.254/24 sees networks with 1 fortigate
and vice versa.
Unfortunately, my knowledge in this matter is scant and I do not understand how to make sure that I can specify the required vlans with 1 fortigate on vcenter.

I will be grateful for any help, as well as for the direction that you can read

4 REPLIES 4
HarshChavda
Staff
Staff

Hello @Dmitrii ,

 

Can you check if your Site to Site VPN has all the subnet of VLAN that you want to route if through the tunnel, please also verify if you have static routes too. If your VLANs are getting IP address from DHCP server of FortiGate then make sure you have relay enabled on the interface. Try to check out the traffic flow with sniffer.

Shashwati
Staff
Staff

hello

 To the getting IP address from a remote DHCP server you can configure the DHCP relay

https://docs.fortinet.com/document/fortiswitch/7.2.3/administration-guide/559601/configuring-a-dhcp-...

Dmitrii
New Contributor

Thanks for the answers! The routes to frigate 2 in the direction of 1 are registered, the dhcp server is located on cisco.
on the server raised on vcenter, I ping all the networks that I registered on 2 fortigate, but when I try to create a vlan on vcenter (respectively, I create such a vlan on 2 fortigate), the server does not receive an ip address from the first fortigate. What am I doing wrong?

Dmitrii
New Contributor

The repeater on 2 fortigate also tried to configure, but it did not give any result (

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors