Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Deftone
New Contributor

IPSec on MAC with certificate

Hi all,

 

Does anyone have IPSec running on a Mac towards the Fortunat with certificate authentication?

 

I have few Win10 machines that working without any problems with certificate authentication but can't get it working on a Mac.

As long as I choose to authenticate with the passphrase on both sides (Mac - Fortigate) the VPN is working but when I choose to authenticate with certificate it fails to connect. The certificate is ok because it's the same certificate I'm using for Win10 machines 

 

I added the output of diag debug app ike -1

 

What I see at the en of the line is:

 

ike Negotiate ISAKMP SA Error: ike 0:d5ad76d498e07e7a/0000000000000000:109: no SA proposal chosen

 

I don't understand it because when I change the authentication to passphrase the VPN is working

So proposal should be fine

 

Anyone any idea?

0 REPLIES 0
Labels
Top Kudoed Authors