IPSec IPSec set up
In this example, the common parameters for establishing IPSec SAs between the two units are as follows:
l Authentication Method: Pre-shared Key
l Phase 1 Mode: Main (ID protection)
l Dead Peer Detection: disable
l Phase 1 Encryption: DES
l Phase 1 Authentication: MD5
l Phase 1 DH Group: 5
l Phase 1 Keylife: 1200 Secs
l Phase 2 Encryption: DES
l Phase 2 Authentication: MD5
l Perfect Forward Secrecy (PFS): enable
l Phase 2 DH Group: 5
l Phase 2 Keylife: 120 Secs
Configurations on FortiWAN
To set up the IPSec VPN, configurations of Network Setting, Auto Routing, NAT and IPSec are required on
FortiWAN (See "Define routing policies for an IPSec VPN").
Network Setting
WAN settings
Go to System > Network Setting > WAN Setting, and create a WAN link configuration:
208 FortiWAN Handbook
Fortinet Technologies Inc.