Hello Community,
how to create a fully-meshed VPN with Provisioning templates on FortiManager for FortiGates with multiple ISP lines and 2 HUBs and multiples Spokes
my architecture is like :
HUB1 ==> 4 ISPs
HUB2==> 4 ISPs
10 Spoke ==> 2 ISPs
my gol is to have in the spoke full mesh to HUBs ( 8 tunnels VPN IPSec to HUB1 and 8 tunnels to HUB2)
Kindly refer to the doc:
Hello,
Thank you for reply. My question is to know if we can do it in Provisioning templates not in vpn manager.
O I see.
I believe there is no restriction, you should be able to do it but would require some manual work.
I could not find any specific doc for this setup.
But, have separate IPSec templates for HUB1, HUB2 and one template SPOKES.
Use metavariables for interfaces/subnets and create multiple tunnels to each site.
If you want ADVPN, then on Spoke template enable the autodiscovery receive and for Hubs autodiscovery sender.
| User | Count |
|---|---|
| 2792 | |
| 1423 | |
| 812 | |
| 748 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.