I have Fortinet 30e with 1 WAN interface.
I have 2 x site 2 site vpn tunnels, say VPNA 10.87.125.0 and VPNB 172.16.14.0
Internal LAN is say 10.3.4.0
I want to have traffic coming into VPNA to route out to VPNB and VPNB to route to VPNA
What is the best way to do this?
Create VLAN 10.3.5.0 do VIP for each VPN and then do static route?
See picture for drawing
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Ken
Thanks for your help but I am very confused.
The remote lan address schema eg 10.87.125.0 I cannot redefine, so I cannot assign it 192.0.1.1/31.
In previous testing, when I had the PH2 Local and remote address set at 0.0.0.0/0 the tunnel would not come up.
fergie
That was examples for the spoke-2-hub wan links, just an example.
Ken Felix
PCNSE
NSE
StrongSwan
well the information is very helpful . i will share the link in my group. i like almost every question answered on this forum in such concise and precise manner
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1632 | |
1063 | |
749 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.