Hi all,
My setup is like this :One cisco ISR router 3800 which is connected to internet,after that fortigate 620B with cluster mode,and then 6500 Series cisco MLS switchs in cluster mode with FWSM again in cluster mode We have multiple VPNs on cisco router and as well as on Fortigate firewall.we have multiple branches connected with Easy VPN which is terminated on Cisco router.I have bypass the VPN traffci both Fortigate and cisco Fwsms for VOIP purpus.So we are facing serious issue with virus so I am trying to pass the entire VPN traffic through Fortigate firewall.I have configured separate physical interfaces and configured a policies and route to direct the traffic through firewall in cisco router,switch and fortigate firewalls also.
I am able to ping the Fortigate interface IP address from both sides But my problem is when Ian trying to ping the internal IP address the somewhere it is getting dropped where as in firewall logs it is showing only interface IP addresses not the original Src and Dst IP address.
Any advices plz.
Regards,
Jai Kishore