Network topology
28 March 2005
FortiGate to Cisco VPN 3000 Concentrator
Interoperability
This technical note demonstrates how to set up an IPSec VPN tunnel between a
FortiGate-800 Antivirus Firewall and a Cisco Systems VPN 3000 Concentrator. In the
configuration example, the two VPN peers use preshared keys to authenticate each
other. This technical note contains the following sections:
•
Network topology
•
Configuring the FortiGate-800
•
Configuring the VPN 3000 Concentrator
•
Monitoring and testing the VPN tunnel
Figure 1
shows an example network configuration. Computers on private Network_2
behind the VPN 3000 Concentrator can access private Network_1 through the
FortiGate-800 unit. All traffic generated by computers on Network_2 is subject to a
FortiGate firewall encryption policy.
Figure 1: FortiGate-800 to VPN 3000 Concentrator IPSec VPN example
172.11.12.80
Network_1
172.11.12.0/24
01-28007-0180-20050328
FortiGate-800
port1
Esc
Enter
192.168.100.99
external
Internet
Ethernet 2 (Public)
192.168.4.2
Ethernet_1
10.180.2.249
VPN 3000
Concentrator
Network_2
10.180.2.0/24
5
Need help?
Do you have a question about the FortiGate-800 and is the answer not in the manual?