Hi Guys,
Although CP & FG IPSEC VPN Tunnel monitor show that the tunnel is up but the traffic couldn't transmit over the vpn tunnel. I can confirm that the encryption details and pre-share secret of both sites are identical. I'm using CP1470 with the latest firmware R77.20.87 and the peers are different Fortigate models. So now my question is whether CP support site to site VPN with FG firewalls with the configuration below especially hostname method over pre-share secret?
VPN site configuration:
Connection Type: Hostname (xxx.dyndns.org)
Pre-share Secret
Encryption method: IKEv1 (main mode)
Disable NAT for this site (checked)
Access Policy has been configured (bi-directional)
Manual No NAT policy also configured
Local encryption domain has been defined
Tunnel Health Monitoring (DPD)
Regards,
Darren