If your FortiGate device is stuck on "negotiating" during IPsec Phase 2,
try these:Check Debug Logs: Use diag debug application ike -1 for
detailed logs.Verify Configurations: Ensure both ends have matching
Phase 2 settings.Check for Duplicate Select...
Hi Kenji,Enabling asymroute is a known workaround but not ideal. I'd
recommend double-checking your policy-based routing setup and ensuring
there are no conflicts with the routing table or session-based routing.
Try clearing the policy and reapplying...