Description
This article delves into the intricacies of setting up a full mesh OCVPN in an environment operating with both FortiOS 6.2 and FortiOS 6.4, ensuring seamless connectivity and security across the network.
Scope
Overview:
As network environments evolve and grow, it's not uncommon for administrators to encounter scenarios where different devices operate on various firmware versions.
One such situation is when FortiGates within a topology runs on both FortiOS 6.2 and FortiOS 6.4.
This might arise during phased upgrade strategies, or when integrating new and legacy equipment.
A pivotal feature available on FortiOS is the Overlay Controller VPN (OCVPN), which provides a simplified way to establish a full mesh VPN between FortiGate devices. However, configuring OCVPN amidst this mixed-version landscape can present unique challenges.
Solution
Topology.
The following topology shows three FortiGate units registered on FortiCare using the same FortiCare account.
Each FortiGate unit has one internal subnet, and no NAT exists between the units.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.