After the Update with the FortiOS v4.3.1 the "mode-cfg" will be set to enable. After that, the Interface Mode IPSec VPN doesn't work anymore.
In the Release Notes you can read the following:
Description: Option “mode-cfg” was turn on by default and thus can cause phase1 mismatch during tunnel initialization when interface mode IPSec Phase1 was configured via Web UI.Bug ID: 146113
Workaround: Use the CLI command “config vpn ipsec phase1-interface>set mode-cfg disable” to disable it.
Status: To be fixed in a future release.
CLI:
config vpn ipsec phase1-interface
edit
set mode-cfg disable
end
Keine Kommentare:
Kommentar veröffentlichen