Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Michaelwright1900
New Contributor

IPsec Route Based VPN and remote VTI

Hiya I've created several IPsec tunnels now between FortiGate and different vendors but have never been able to ping the Remote VTI interface across the tunnel is this possible? I ask the question because instead of advertising subnets from the remote site I want to use the remote VTI to do some dst-nat to remote devices instead. How it this possible if I cant ping or communicate with the remote vti. The tunnel is up and can reach remote subnets in example I have.

1 REPLY 1
Toshi_Esumi
Esteemed Contributor III

It's just a tunnel interface if you configured interface mode/route based IPSec on the remote side. As long as the returning route to the ping source is routine into to tunnel on the remote side, I don't see any reason not to be able to ping it through the tunnel regardless it's a FGT or other vendor's FW/router.

Labels
Top Kudoed Authors