Meraki MX85 e Fortinet

Solved
Luana
Comes here often

Meraki MX85 e Fortinet

Boa noite, Pessoal!

 

Estou com problema na VPN Site to Site entre o Meraki e o Fortinet, foi feita a configuração e funcionou por algumas horas, após isso a conexão só volta se eu reinicio o Meraki e fica nesse looping de ficar reiniciando para a VPN funcionar, alguém teve esse problema pra me ajudar? Obrigada.

1 Accepted Solution
alemabrahao
Kind of a big deal
Kind of a big deal

Luana, da uma olhada nesse artigo.

 

https://freddejonge.nl/fortinet-to-meraki-site-2-site-vpn/

 

Caso contrário você precisa abrir um chamado com a Meraki.

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.

View solution in original post

2 Replies 2
alemabrahao
Kind of a big deal
Kind of a big deal

Luana, da uma olhada nesse artigo.

 

https://freddejonge.nl/fortinet-to-meraki-site-2-site-vpn/

 

Caso contrário você precisa abrir um chamado com a Meraki.

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
alemabrahao
Kind of a big deal
Kind of a big deal

Recomendo também deixar o lifetime da phase 2 menor que da phase 1.

 

86400 segundos para a  phase 1 e 3600 segundos para a phase 2.

 

Se o lifetime da phase 1 for mais curto que o da phase 2, você precisará estabelecer uma nova phase 1 toda vez que a phase 2 for rechaveada. Isso pode resultar em um overhead adicional.

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels