www.zyxel.com
Go to Phase 2 Selectors > Advanced and configure Phase 2 Proposal as the peer
ZyWALL/USG Advanced Settings' Phase 2 Settings > Proposal.
Set Local Address to be the IP address range of the network connected to the
FortiGate and Remote Address to be the IP address range of the network
connected to the ZyWALL/USG.
Make sure you uncheck Enable Perfect Forward Secrecy (PFS) if this function is
disabled in the peer ZyWALL/USG.
VPN > IPsec > Wizard > Custom VPN Tunnel (No Template) > Phase 2 Selectors
176/749