Comments
 
posted on June 24th 2015, at 11:10
by lunarg
The logging on a FortiGate firewall is very scarse, making it difficult to troubleshoot issues. This can especially be a problem when setting up a site-to-site IPSEC VPN tunnel. Although the web interface doesn't provide much information for troubleshooting and debugging, the console does when debugging is enabled.

On most (if not, all) FortiGate appliances, you can access the console through the web interface. It usually can be found on the Dashboard (> Status).



As it says, click on the console to activate it.

Enabling debugging for all IPSEC VPNs means we enable debug mode on "IKE". This is done by the following series of commands.

If any debugging is already in progress  ...
 
On December 20th 2015 at 23:47, San wrote:
 
Hi There. I found your weblog the in gogole. This is a good article. I will make sure to bookmark it and return to learn more of your helpful information. Thank you for the post. I’ll certainly return.