IPSec IPSec set up
Input Port
Any Port Any Port (or the LAN port, PortX)
Source
Localhost 2.2.2.0/255.255.255.0
Destination
10.12.136.180 1.1.1.0/255.255.255.0
Service
Any or IKE(500) Any
Routing Policy
IPSec_WAN1 IPSec_WAN1
Fail-Over Policy
NO-ACTION NO-ACTION
For the details of Auto Routing, see "Auto Routing".
NAT
Go to Service > NAT, and create a NAT rule:
When
All-Time
Source
2.2.2.0/255.255.255.0
Destination
1.1.1.0/255.255.255.0
Service
Any
Translated
No NAT
For the details of NAT, see "NAT".
IPSec
Go to Service > IPSec, and create a Tunnel Mode:
Phase 1
Name
IPSec_FGT_P1
Local IP
10.12.102.42
Remote IP
10.12.136.180
Authentication Method
Pre-shared Key: 12345
Mode
Main (ID protection)
Dead Peer Detection
Disable
210 FortiWAN Handbook
Fortinet Technologies Inc.