IPsec VPN Fortigate 310B - checkpoint R76. Tunnel established but no traffic

Hi

Set up an IPsec VPN tunnel between our site, and a remote site.
We are using the Fortigate 310B and the other uses a Checkpoint R76.

Let's just name them:
CompanyA - Fortigate 310B, our site
CompanyB - Checkpoint R76, remote site

The VPN tunnel establishes ok, but no traffic is being sent through the tunnel, triple checked our settings and everything seems to be exactly the same.

Are there any pitfalls connecting fortigate to chekpoint or special considerations, as I can't see where the error is and what is causing it. Could really use some help on this one.


CompanyA Config
Set up the following:
Phase1, interface mode
Phase2
Static Route
Policy which allows traffic

Phase1
Fortigate310B_Phase1
Phase 2
Fortigate310B_Phase2
Static Route
Destination: 10.20.0.0/255.255.0.0
Device: VPN Tunnel
Distance: 10

Policy
CompanyA LAN -> CompanyB LAN
Service ANY
ACCEPT


CompanyB Config
Here is what I got from CompayB.
The rest of the settings not showed in the pictures is correct.

VPN config
CheckpointR76_AdvancedVPN
Encryption
CheckpointR76_Encryption
Encryption_2
CheckpointR76_EncryptionCustom

Regards.
LenblockAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

LenblockAuthor Commented:
The solution was found.

CompanyB checked their settings and discovered that traffic towards CompanyA LAN 172.22.0.0/17 was not routed through the tunnel.
CompanyB changed their routing and pointed the traffic correctly, and now it works like a charm.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Internet Protocol Security

From novice to tech pro — start learning today.