cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2736
Views
0
Helpful
2
Replies

Umbrella SIG VPN for HTTPS Inspection and Fortigate

amadoriale
Level 1
Level 1

Hello,

 

I see on this doc

 

https://docs.umbrella.com/umbrella-user-guide/docs/tunnels

 

and also this one

 

https://docs.umbrella.com/umbrella-user-guide/docs/supported-ipsec-parameters

 

that Umbrella has only been tested for S2C VPN on CISCO hardware, but it's probably compatible with anything that can support an IKEv2+PSK configuration. I am also aware that maximum is 2 tunnels per site for a maximum throughput of 500mbps.

 

Now, has anyone ever implemented this on Fortigate devices? I believe it should be pretty straightforward and easy to do, but I have tested it on a Ubiquiti USG and it's not working atm, so we have a customer with a Fortigate perimeter defence and we wouldn't want to fall short just cause he has a different technology as perimeter defense. After all, Umbrella should be deployable anywhere, it's the whole concept of the SWGs.

2 Replies 2

Ruben Cocheno
Spotlight
Spotlight

@amadoriale 

 

I've tried and didn't have any problem, but never tried to reach that bandwidth per tunnel. Something to test at some point.

Tag me to follow up.
Please mark it as Helpful and/or Solution Accepted if that is the case. Thanks for making Engineering easy again.
Connect with me for more on Linkedin https://www.linkedin.com/in/rubencocheno/

Hi Ruben

 

How did you set up the tunnel on the Fortigate exactly?

I'm also trying to set this up but can't figure out the tunnel config on the Fortigate.

 

Thanks!