We have 2 sites (SiteA & SiteB) that have 2 VPN tunnels with HQ. e.g.:
SiteA ---- HQ ---- SiteB
Now I can access to HQ on site A and access to HQ on siteB.
Can I access to SiteB devices on SiteA?
Solved! Go to Solution.
Hi CFSC,
Yes, you can access SiteB devices from SiteA through HQ, but it requires configuration on all three FortiGate firewalls (SiteA, HQ, SiteB) to allow inter-site routing over the VPN tunnels.
Please refer to the document below on how to configure a redundant hub‑and‑spoke IPsec VPN topology, which is exactly the setup you need to enable traffic between Site A and Site B via the HQ FortiGate.
If you have found a solution, please like and accept it to make it easily accessible to others.
Regards,
Aman
Hi CFSC,
Yes, you can access SiteB devices from SiteA through HQ, but it requires configuration on all three FortiGate firewalls (SiteA, HQ, SiteB) to allow inter-site routing over the VPN tunnels.
Please refer to the document below on how to configure a redundant hub‑and‑spoke IPsec VPN topology, which is exactly the setup you need to enable traffic between Site A and Site B via the HQ FortiGate.
If you have found a solution, please like and accept it to make it easily accessible to others.
Regards,
Aman
User | Count |
---|---|
2570 | |
1362 | |
796 | |
651 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.