About trusthost, there is nothing configuration neither in the Fortigate
nor in the Cisco. The Cisco has the following IOS: Cisco # sh ver Cisco
IOS Software, C880 Software (C880DATA-UNIVERSALK9-M), Version 15.2 (4)
M5, RELEASE SOFTWARE (fc2) And the...
Hi Toshi, This is the output of "get vpn ipsec tun sum": CENTRAL-FG #
get vpn ipsec tun sum 'VPNFortiGateNAT-T_0' W.X.Y.Z:4500
selectors(total,up): 1/1 rx(pkt,err): 175998/0 tx(pkt,err): 152436/0
'VPNCiscoNAT-T_0' W.X.Y.Z:64916 selectors(total,up): 1...
This is the output: Cisco#show crypto session Crypto session current
statusInterface: Tunnel0 Session status: UP-ACTIVE Peer: port 4500 IKEv2 SA: local /4500 remote /4500 Active IPSEC FLOW:
permit ip 0.0.0.0/0.0.0.0 0.0.0.0/0.0.0.0 Active SAs: 2, or...
Some show commands: Cisco#sh int tun0 Tunnel0 is up, line protocol is up
Hardware is Tunnel Internet address is 172.16.0.26/30 Cisco#ping
Protocol [ip]: Target IP address: 172.16.0.25 ### Fortigate Side VTI
Address ###Repeat count [5]: 10 Datagram si...