Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Tutek_OLD
New Contributor

Ipsec Interface mode with Mikrotik?

Hi'

I'm going soon to install on our network central fortigate UTM, it will be connected with some mikrotik routers using ipsec. 

Now I'm thinking how to connect it. As I have many networks, I wouldn't rather use legacy ipsec in tunnel mode.

If I choose ipsec in interface mode how then should I configure Mikrotik side, should it be GRE Ipsec Interface? Or maybe Ipsec interface mode can be configured only between Fortigate devices?

 

thanks for help.

3 REPLIES 3
zvideoz
New Contributor

Hi, I spent several days on this issue, but did not find a fully working solution. This is the hottest topic now in medium-sized business. Many people refuse to integrate FortiGate, so it is difficult to make friends with a MicrotiK.

rwpatterson
Valued Contributor III

How you configure the Fortigate has nothing to do with the remote end. They cannot tell if the FGT is in interface or tunnel mode. A tunnel is a tunnel as far as they know. I have broken down FGT tunnels in tunnel mode and brought them back up in interface mode. The credentials are the same. The difference boils down to a check box during creation. (Oh, and the routing definition and policy is different too)

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
emnoc
Esteemed Contributor III

To add, mikrotik vpn to fgt are well known. Take a look at this https://www.fastbit.ro/en/ipsec-site-to-site-vpn-between-fortigate-and-mikrotik/

 

Also, ipsec is an open standard.

 

Ken Felix

 

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
Labels
Top Kudoed Authors