Ping Generator - Fortinet FortiGate FortiGate-1000A Administration Manual

Fortinet fortigate fortigate-1000a: user guide
Hide thumbs Also See for FortiGate FortiGate-1000A:
Table of Contents

Advertisement

Ping Generator

Ping Generator
274
Available
A list of defined IPsec VPN tunnels. Select a tunnel from the list and then
select the right-pointing arrow. Repeat these steps until all of the tunnels
Tunnels
associated with the spokes are included in the concentrator.
Members
A list of tunnels that are members of the concentrator. To remove a tunnel
from the concentrator, select the tunnel and select the left-pointing arrow.
The ping generator generates traffic in an IPSec VPN tunnel to keep the tunnel
connection open when no traffic is being generated inside the tunnel. For example,
the ping generator is useful in scenarios where a dialup client or dynamic DNS peer
connects from an IP address that changes periodically—traffic may be suspended
while the IP address changes. You may also use the ping generator to troubleshoot
network connectivity inside a VPN tunnel.
You can configure settings to generate ping commands through two tunnels
simultaneously. The ping interval is fixed at 40 seconds.
The source and destination IP addresses refer to the source and destination
addresses of IP packets that are to be transported through the VPN tunnel. When
source and destination addresses of 0.0.0.0 are entered, no ping traffic is
generated between the source and destination.
To configure the ping generator
1
Go to VPN > IPSEC > Ping Generator.
2
Select Enable.
3
In the Source IP 1 field, type the private IP address or subnet address from which
traffic may originate locally (for example, 192.168.20.12 or 192.168.20.0
respectively).
4
In the Destination IP 1 field, enter the IP address of a remote computer:
For a peer-to-peer configuration, the destination address is the private IP address
of a server or host behind the remote VPN peer (for example, 172.16.5.1/32).
For a dialup-client or Internet-browsing configuration where the remote VPN client
is configured to acquire a virtual IP address, the destination address must
correspond to the virtual IP address that can be acquired.
5
If you want to enable a second ping generator, repeat Steps 3 and 4 for the Source IP
2 and Destination IP 2 settings.
6
Select Apply.
01-28011-0254-20051115
VPN
Fortinet Inc.

Advertisement

Table of Contents
loading

Table of Contents