What i mean is, when you don't use Split Tunnel, the Forticlient
overwrite the normal default route.0.0.0.0 0.0.0.0 10.20.3.201
10.20.3.200 2This route has a better metric as your normal default
route0.0.0.0 0.0.0.0 192.168.144.1 192.168.144.101 552 ...
Your DMZ network is overlapping with your remote network. Change the IP
of the DMZ to 0.0.0.0/0 and disable it, when you don't need this
interface. RegardsAndreas
Hello,no, the destiantion ip is important. This is 8.8.8.8. And the
first ISP route this to google. You need a Site-to-Site IPsec VPN Tunnel
between the both FG.This is totally easy to configure. And you need a
second default route in the VPN
Tunnel....