FortiManager
FortiManager supports network operations use cases for centralized management, best practices compliance, and workflow automation to provide better protection against breaches.
iyotov
Staff
Staff
Article Id 190971
Description
This article describes how to fix tunnel visibility in policies with the Action set to IPsec. This happens after creating Tunnel Mode IPsec VPN in the Device Manager.
Solution
The tunnel mode IPsec VPNs are dynamic objects, and are not displayed or imported automatically.
After creating the new tunnel in Device Manager, it needs to be mapped first in the ADOM so it can be used in the policies.

Here is a step by step guide: 

1. Navigate to Policy&Objects > Object Configurations.

2. Click Tools and select Display Options.

3. Scroll down to the "Dynamic Object" section, enable "VPN Tunnel" and click OK.

4. Go to Policy&Objects > Object Configurations > Dynamic Object > VPN Tunnel.

5. Click Create New, set a name for the object (usually the same as the tunnel name), and enable "Per-Device Mapping".

6. Create New per-device mapping, and select Mapped Device and VPN Tunnel.

After saving the mapping and the object, the new tunnel will appear in the policy's VPN Tunnel dropdown.

Contributors