Hi, I`m having problems with setting up IKEv2 IPSEC with remote
site.What I`ve done:I`ve imported Certificate via GUI and whole Chain by
which this certificate is signeg (Internal CA).I`ve setup Custom
Site-to-Site tunnel.SA Policies do match.Hovewer...
FG Config FortiGate # show vpn ipsec phase1-interface BIAconfig vpn
ipsec phase1-interface edit "BIA" set interface "wan1" set ike-version 2
set local-gw LocalIP set authmethod signature set peertype any set
proposal aes256-sha256 set dpd disable set...
I've tried to set peer verification but result is same as above no
matter if I verify with rootca (self signed) or ipsec ca (signed by
root, remote and local certificate signed by this ca)