Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
cynthia
New Contributor

VPN termination: fortigate or router

Hi please I need your help ,

 

If we have a VPN between 2 branch, where is it recommended to terminate this vpn? on a Fortigate

 or a router?

What are the advantages of VPN on a fortigate and what is the added value when terminating on a firewall and not on a router?

 

 

1 REPLY 1
ede_pfau
SuperUser
SuperUser

Simply put, and my personal opinion only, terminating a VPN on the FGT is easier to set up, manage and use.

See, routers may change, depending on the access technology; basically, we need them for interfacing (to fiber, WiFi, cable,...). They are not specifically made for security, VPN, application control etc.

 

With the tunnel definition on the FGT you get a broad support for IPsec standards, easy setup by using address objects for phase2 and the routing, monitoring, (some) logging. As often the FGT is central to a LAN you only need to learn one OS or Web GUI.


Ede

"Kernel panic: Aiee, killing interrupt handler!"
Ede"Kernel panic: Aiee, killing interrupt handler!"
Labels
Top Kudoed Authors