cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1834
Views
0
Helpful
2
Replies

VPN IPSec between Cisco ASA and Fortigate1000

Mahmoud Aziz
Level 1
Level 1

Hello there,

I have searching for a usefull document on how to create a VPN IPSec tunnel between ASA 5510 and a Fortigate 1000 firewall...

the configuration from the FG side is done with no issues, BUT, the document (FG doc.) says that I should configre the ASA with an GRE interface and give it an internal IP address in order to be able to communicate with the FG...

The question is: how to configure the GRE interface on the ASA ?

Many thanks in advance, Experts..

Regards...

1 Accepted Solution

Accepted Solutions

Jennifer Halim
Cisco Employee
Cisco Employee

ASA firewall does not support GRE interface/GRE tunnel.

If you need to have GRE configured, you would need to terminate the GRE tunnel on IOS router.

If you would like to configure just pure IPSec VPN (lan-to-lan) tunnel, here is the sample configuration on the ASA side:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080950890.shtml

Hope that helps.

View solution in original post

2 Replies 2

Jennifer Halim
Cisco Employee
Cisco Employee

ASA firewall does not support GRE interface/GRE tunnel.

If you need to have GRE configured, you would need to terminate the GRE tunnel on IOS router.

If you would like to configure just pure IPSec VPN (lan-to-lan) tunnel, here is the sample configuration on the ASA side:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080950890.shtml

Hope that helps.

Thanks Jen,

This is what i thought..