IPSec set up IPSec
WAN Link
1
WAN Type
Routing Mode
WAN Port
Port1
IPv4 Localhost IP
10.12.102.42
IPv4 Netmask
255.255.255.0
IPv4 Default Gateway
10.12.102.254
For the details of WAN link setting, see "Configurations for a WAN link in Routing Mode", "Configurations for a WAN
link in Bridge Mode: One Static IP" and "Configurations for a WAN link in Bridge Mode: Multiple Static IP".
LAN private subnets
Go to System > Network Setting > LAN Private Subnet, and create a LAN subnet configuration:
IP(s) on Localhost
2.2.2.254
Netmask
255.255.255.0
LAN Port
Port3
For the details of LAN private subnet setting, see "LAN Private Subnet".
Auto Routing
Go to Service > Auto Routing, and create a policy and two IPv4 filters for IKE negotiations and IPSec
communication.
Policy
Label
IPSec_WAN1 (Any name you desire)
T
Enable Threshold or not
Algorithm
Fixed
Parameter
Only 1 is checked
IPv4 Filter
Two IPv4 filters: one for IKE negotiations, and another for general IPSec communication.
When
All-Time All-Time
FortiWAN Handbook
Fortinet Technologies Inc.
209