[Last Call] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 721
  • Last Modified:

Fortigate Branch to Branch network VPN failling at Phase2

I am setting up a Branch VP between two fortigate units phase 1 seems to complete but phase 2 does not.

The Phase 1 and Phase 2 definitions are show in the attached files. with a snipite of the log file.

Both devices have 4.0 Mr1 OS and one sits behind a nated router




log.PNG
phase1.PNG
phase2.PNG
phase11.PNG
phase21.PNG
0
dlg654
Asked:
dlg654
1 Solution
 
fritz5150Commented:
I do know that the fortinet units require you to setup your firewall rules to allow access between the main network and the vpn network before the vpn will work. Have you configured those rules yet?
0
 
dlg654Author Commented:
Just doubled checked. Yes the firewall rule is in place. Need to add that the vpn is a policy based one rather than a route based one. Currently setup to allow all services. Will tie it down once the VPN is up. Thank you for the suggestion.

DLG654
0
 
myramuCommented:
Hello Dlg654,

Since one device is behind the NATed device make sure that required ports are opened in the upstream device and don't forget to enable the "NAT Traversal" option.

Good Luck!
0

Featured Post

Important Lessons on Recovering from Petya

In their most recent webinar, Skyport Systems explores ways to isolate and protect critical databases to keep the core of your company safe from harm.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now