Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Schartmueller
New Contributor

HA-Cluster and PPPoE

HA does not provide session failover for PPPoE, DHCP. If one or more FortiGate unit interfaces is dynamically configured using DHCP or PPPoE you cannot switch to operating in HA mode. Anyway I need some configuration with HA, PPPoE and IPSEC-VPN because some ISP' s only supports connections with PPPoE. Has anyone else similar issues, VPN, HA and PPPoE, does anyone has a solution, maybe some router with VPN-passthrough ? Many Thanks Jo Schartmueller
1 REPLY 1
ede_pfau
SuperUser
SuperUser

Hi, yes exactly, you' ve named the solution: provide a router for your WAN line and feed the ethernet to the FG cluster (switch). In this case you configure the credentials on the router. VPN gateway will still be the FG cluster, configure the FG as " exposed host" or similar. From experience, make sure the router doesn' t interfere with IPSec for its own purposes...

Ede

"Kernel panic: Aiee, killing interrupt handler!"
Ede"Kernel panic: Aiee, killing interrupt handler!"
Labels
Top Kudoed Authors