Fortinet: Troubleshoot 5 IPSec Site-to-Site VPN Scenarios - FortiGate

Поделиться
HTML-код
  • Опубликовано: 8 июл 2024
  • Quick introduction into FortiGate VPN troubleshooting tools along with 5 sample scenarios that you may run into when deploying.
    0:00 Overview/Topology
    0:42 Troubleshooting tools
    2:35 Scenario1 - phase1 down
    4:16 Scenario2 - phase1 (still) down
    6:37 Scenario3 - phase2 down
    8:58 Scenario4 - ping failure
    11:10 Scenario5 - ping (still) failure
    15:39 Wrap Up
  • НаукаНаука

Комментарии • 22

  • @jobyit
    @jobyit Год назад +3

    Brilliant, this would really help FortiGate engineers to fix all the s2s related issues.Awesome.......

  • @CiZiK22
    @CiZiK22 18 дней назад

    Interesting video, well done ! Thanks

  • @aarushsingh2006
    @aarushsingh2006 2 года назад +2

    It was really to the point. Thanks mate.

  • @netconfig999
    @netconfig999 22 дня назад +1

    thanks for sharing

  • @amitkoolmar
    @amitkoolmar 2 года назад +1

    Amazing content! Thanks so much!

  • @bjaspidey
    @bjaspidey Год назад +1

    Excellent video!

  • @michaelcarreira2638
    @michaelcarreira2638 2 года назад

    Wow what great content!

  • @jayanvv-oi8hp
    @jayanvv-oi8hp 2 года назад +1

    great content 🤝

  • @ernof4271
    @ernof4271 Год назад

    thanks mate, very usefull information for me

  • @ravishere-mn6no
    @ravishere-mn6no Год назад

    Thank you very much for the video !!

  • @Quick_UnBoxing0
    @Quick_UnBoxing0 9 месяцев назад +1

    Amazing 🎉

  • @bowser101
    @bowser101 6 месяцев назад +1

    great job, tks!

  • @carloscortes8761
    @carloscortes8761 4 месяца назад +1

    i love ti, thanks

  • @Zdawoud
    @Zdawoud 9 месяцев назад +1

    Thanks (Y)

  • @murugansridhar7909
    @murugansridhar7909 9 месяцев назад +1

  • @raikone14
    @raikone14 2 года назад

    tks, nice vide, if you allow me to make a question, if nat t is enable I should expect traffic in port 500 as well in phase1 ? or 4500 ? I am confuse

    • @tothepointfortinet3823
      @tothepointfortinet3823  2 года назад +2

      Yes, you should always expect traffic on port 500 regardless of NATT, NATT is specific to phase2
      Here's the ports/protocols to expect depending on whether NATT is in use or not:
      NATT NOT being used:
      phase1 = UDP 500
      phase2 = ESP (ie. IP protocol 50)
      NATT being used:
      phase1 = UDP 500
      phase2 = UDP 4500

    • @raikone14
      @raikone14 2 года назад

      @@tothepointfortinet3823 tks a lot for the reply..you are a nice person :)

  • @netadministrator1371
    @netadministrator1371 4 месяца назад

    i already creat site to site.its successful to connect but the other side i cant ping thier ip (local ip's).

  • @loidrama4721
    @loidrama4721 Год назад

    Sir my problem is that all Connections are up but no Incoming Data and Outgoing data were made.

    • @tothepointfortinet3823
      @tothepointfortinet3823  Год назад

      Might want to check firewall policy config, ipsec selectors and routing config. If you still have trouble check out my video on sniffer. Then it might be good to call support