cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
845
Views
0
Helpful
1
Replies

IPSec VPN IOS HA to Fortigate 400A

mariocabrejo
Level 1
Level 1

I am running several VPNs from my HA router with different appliances. We have issues with this Fortigate 400A, tunnel, but traffic passes only sporadically (tunnel never drops). For example sometimes icmp responds through the tunnel and sometimes it just times out. Need to know any know issue that could prevent traffic from crossing the tunnel.

Thanks

flash:c2800nm-advsecurityk9-mz.124-3g.bin

1 Reply 1

tstanik
Level 5
Level 5

The problem will be due to mismatch IKE keepalives. By default IKE keepalive's on cisco devices is 86400 seconds. Check the keepalive's at the Fortigate and configure it accordingly. Following links may help you

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094498.shtml

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080094761.shtml

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: