Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Fullmoon
Contributor III

ipsec vpn blocks ipsec vpn protocol?

as the title implies, anyone could share on how to troubleshoot if the ISP Router blocks/not accepting ipsec vpn protocol?

I setup DialUp VPN wherein remote sites able to established from HO-remote sites, Dial VPN is working already, recently our HO acquired new ISP, if remote sites pointing to the new ISP tunnel is not showing up. Tried to reboot remote site firewall and modem just to clear in cache but no avail, reverting back to old ISP and VPN is tunnel is working fine.

Fortigate Newbie

Fortigate Newbie
1 REPLY 1
Toshi_Esumi
SuperUser
SuperUser

I would just sniff at both sides of FG and see what one end is sending, which the other end is not receiving. It could be UDP 500 or 4500 blocked depending on NAT-T or not. Or could be just ESP(50)/AH(51) blocked after SAs have been established. Time to time this happens to our new customers when we try setting up IPSec between us and the customers.

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors