I have Fortinet 30e with 1 WAN interface.
I have 2 x site 2 site vpn tunnels, say VPNA 10.87.125.0 and VPNB 172.16.14.0
Internal LAN is say 10.3.4.0
I want to have traffic coming into VPNA to route out to VPNB and VPNB to route to VPNA
What is the best way to do this?
Create VLAN 10.3.5.0 do VIP for each VPN and then do static route?
See picture for drawing
Ken
Thanks for your help but I am very confused.
The remote lan address schema eg 10.87.125.0 I cannot redefine, so I cannot assign it 192.0.1.1/31.
In previous testing, when I had the PH2 Local and remote address set at 0.0.0.0/0 the tunnel would not come up.
fergie
That was examples for the spoke-2-hub wan links, just an example.
Ken Felix
PCNSE
NSE
StrongSwan
well the information is very helpful . i will share the link in my group. i like almost every question answered on this forum in such concise and precise manner
User | Count |
---|---|
2593 | |
1382 | |
800 | |
659 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.