03.04.2013 Views

fortigate-ipsec-40-mr3

fortigate-ipsec-40-mr3

fortigate-ipsec-40-mr3

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Redundant VPN configurations Partially-redundant route-based VPN example<br />

Enable IPsec Interface Mode Select<br />

Dead Peer Detection Select<br />

3 Select Create Phase 1, enter the following information, and select OK:<br />

Name Site_1_B<br />

Remote Gateway Dialup User<br />

Local Interface WAN2<br />

Mode Main<br />

Authentication Method Preshared Key<br />

Pre-shared Key Enter the preshared key.<br />

Peer Options<br />

Advanced<br />

Accept any peer ID<br />

Enable IPsec Interface Mode Select<br />

Dead Peer Detection Select<br />

To define the phase 2 configurations for the two VPNs<br />

1 Go to VPN > IPsec > Auto Key (IKE).<br />

2 Select Create Phase 2, enter the following information and select OK:<br />

Name Route_A.<br />

Phase 1 Site_1_A<br />

3 Select Create Phase 2, enter the following information and select OK:<br />

Name Route_B.<br />

Phase 1 Site_1_B<br />

To configure routes<br />

1 Go to Router > Static > Static Route.<br />

2 Select Create New, enter the following default gateway information and then select<br />

OK:<br />

Destination<br />

IP/Mask<br />

0.0.0.0/0.0.0.0<br />

Device WAN1<br />

Gateway 192.168.10.1<br />

Distance 10<br />

FortiOS Handbook v3: IPsec VPNs<br />

01-434-112804-20120111 169<br />

http://docs.fortinet.com/

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!