FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Not applicable
Article Id 197805
Article
DescriptionHub and Spoke (concentrator mode) VPN configuration example
Components
  • All FortiGate units
  • v2.80
Steps or Commands

In a typical ‘hub and spoke’ configuration, the spokes have access to each other via the hub (also known as the Concentrator), and they also access the Internet via the hub. The hub therefore performs the antivirus, content control and any other filtering required for each remote site to access the Internet. The Hub’s connection to the Internet is usually a regular (non-VPN) connection.

The PDF document below includes an example configuration, In the example, the hub’s connection to the Internet is via another VPN connection. This requires certain changes to the setup, which are particular to this configuration. Particularly, the ‘Internet Browsing’ feature on the hub will not be used, and two different concentrators will also need to be configured.