cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
667
Views
0
Helpful
3
Replies

Site to Site tunnel between Cisco ASA and Fortinet Firewall

AGINetworkGroup
Level 1
Level 1

I am trying to establish a Site to Site tunnel between Cisco ASA and the Fortinet Firewall. IKE gets established but I am unable to understand why its not going further to establish IPSEC tunnel.

Can anyone help me get this done.

Regards

K.V.Krishna

3 Replies 3

JORGE RODRIGUEZ
Level 10
Level 10

go through this link for troubleshooting crypto isakmp.

troubleshooting crypto isakmp commands.

http://www.cisco.com/en/US/tech/tk583/tk372/technologies_tech_note09186a00800949c5.shtml

HTH

Jorge

Jorge Rodriguez

JORGE RODRIGUEZ
Level 10
Level 10

K.V., can you post your config for the ASA side.

Here are couple of examples for L2L vpn between PIX and a Non-cisco firewall device, in this case is a sonicwall, by looking at these examples you may be able to spot what configuration you are missing in your ASA or the other firewall.

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a008052c9d4.shtml

another example between PIX and Fortinet fw.

http://kc.forticare.com/default.asp?id=440&Lang=1

Jorge Rodriguez

ajagadee
Cisco Employee
Cisco Employee

Hello Krishna,

Can you post the outputs of "Deb cry is" and "deb cry ips" from the ASA.

- Arul