Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
gabriel24
New Contributor

Protected subnets not pushed to fortigate

Hello,

 

I'm fairly new to using fortimanager for VPN configuration, so here is my problem.

I have to fortigates in a lab environment both on the same Adom for simplicity and I want to create a Site-to Site VPN between them.

What I have observed is that no matter what subnet/s I define as a protected subnet the manager when pushes the configuration to the fortigates it does not define any subnets in the phase2-interface and so the fortigate has 0.0.0.0/0.

I tried using static objects as well as dynamic mapping but with no luck.

Could you please advise?

 

This is part of the configuration to be pushed to the fortigate:

 

"config vpn ipsec phase2-interface edit "Default_1_0"         set phase1name "Default_1"         set proposal aes128-sha1         set auto-negotiate enable         set comments "[created by FMG VPN Manager]"         set keylifeseconds 1800 next"

 

Regards

0 REPLIES 0
Labels
Top Kudoed Authors