Hello, We have a requirement to create a simple IPSec VPN to another
customer who is also using a Fortigate firewall at their end. However,
due to a conflict of subnets in our environment, I need to destination
NAT their subnet before it hits the IPS...
Thank you very much for your detailed response again. The Source IP at
our end will be a Public IP so that shouldn't be a problem as far as
source NAT requirements are concerned. The rest of it, I will implement
it tomorrow morning and let you know h...
Further to this, if I may add, and I think it is important piece of the
question that I should have stated earlier: - We need to NAT since the
original subnet at remote end is a Reserved subnet for our environment.
So, if I were to do DNAT at our end...
Thank you for providing some good details there. ede_pfau wrote: The
second policy (ingress) will have to source NAT the remote traffic, and
will have to do DNAT to the reply traffic. So this will need a bit of
trying out until you get it done (sorry...