The problem is that when in transparent mode the outside users cannot use VPN anymore.why not?; IPSec is still available in TP mode.
Maybe because by default a Fortigate unit in transparent mode isn' t forwarding non-ARP broadcast frames ?I' m not sure if I understand which exactly is your issue; VPN or anything else
regards
/ Abel
We kind of solved this problem by putting the Fortigate in front of the router (LAN <-> Gateway <-> Fortigate (transparent mode) <-> Internet.woaa...hope your demo is finished soon. Did you think of allowing ESP in? This is not a TCP protocol. Besides, IPSec can use UDP/500 and UDP/4500 (when NAT-T). As you didn' t mention the kind of VPN in use this is wild guessing again...
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.