Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
smartini
New Contributor

VxLAN over IPSEC drives me crazy!

Hi,

there is this scenario:

HQ with FGT100E and the firewall itself should be the BO remote network default gateway (192.168.113.254/24). It has a lot of networks configured, other networks can reach the 192.168.113.0/24 through firewall routing.

BO with FGT30E, LAN network is 192.168.113.0/24.

 

I'd like to setup a VxLAN over IPSec between two sites, I do it but I can't manage the default gateway in the 100E without using a physical port. And I don't want to use ports because I have several BO to connect in this way.

I need a L2 link between the BO net and the default gateway in the HQ firewall.

How can I manage this?

 

Best regards

31 REPLIES 31
Julien87

Hi,

Yes it's okay with only ipsec in my software switch.PING Request from remote site.PING Request from remote site.

Julien
Julien
smartini

Sorry for the late answer! Can you post screenshots of the configuration of your test? Still no work for me

Labels
Top Kudoed Authors