Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
sthead
New Contributor

Cisco and Fortinet VPN Same Subnet

Salutations!

 

I am presently trying to create a VPN between a fortinet 100E at FortiOS v5.6.8 build1672 (GA) with a cisco adsm 6.6. They both have the same subnet and I am unable to change the ips on either side. Any help would be greatly appreciated!

 

regards

2 REPLIES 2
sali
New Contributor

Hi,

 

Try the create vpn tunnel with NAT.

Phase2 selector your public ip and remote public ip.

In static route: asa remote public interface the tunnel gw, in the policy use your local subnetnes (private ip).

 

I already use this case and working fine.

 

Sali

sthead
New Contributor

Thank you for the response!

 

I beleive I have this configured correctly but am unable to get the tunnel to come up. I keep getting the message:

 

Peer Sa proposal not match local policy.

 

ike Negotiate ISAKMP SA Error: ike 0:5f4129ee9ce92c60/0000000000000000:650: no SA proposal chosen

 

I am unsure how to proceed. Thank you in advance for any assistance!

 

regards!

 

Labels
Top Kudoed Authors