Wednesday, September 8, 2021

IPSec VPN problems Fortigate <-> ASAv

Hi there,

We just set up a new VPN (IPsec IKEv2) between a Fortigate 60E (we're on FortiOS 6.4.4) and an ASAv (9.14) on Azure.

Phase 1 comes up and the first of the phase 2 interfaces configured on the Fortigate. We have five subnets on our side but only the one that is top of the list will come up. Traffic flow works for that subnet.

We had the exact same problem with a VPN between that ASAv and a Checkpoint so I think the Fortigate might be innocent in this case. We installed a hotfix on the Checkpoint and after that the VPN worked for all subnets. I have no idea though if anything was changed on the Azure ASA.

The cooperation of the ASA's admin is not the best so that might limit the information I can provide.

Anyone seen something like that and found a solution?



No comments:

Post a Comment