"actions" : [ "useSubjectIcons" : "true", "action" : "rerender" "actions" : [ { "action" : "rerender" ], }, "useCountToKudo" : "false", LITHIUM.DropDownMenuVisibilityHandler({"selectors":{"menuSelector":"#actionMenuDropDown_7","menuItemsSelector":".lia-menu-dropdown-items"}}); { LITHIUM.AjaxSupport.ComponentEvents.set({ "event" : "MessagesWidgetAnswerForm", } "actions" : [ "initiatorBinding" : true, "actions" : [ "revokeMode" : "true", "initiatorDataMatcher" : "data-lia-kudos-id" "event" : "removeThreadUserEmailSubscription", match address 101 ] } ","loaderSelector":"#threadeddetaildisplaymessageviewwrapper_3 .lia-message-body-loader .lia-loader","expandedRepliesSelector":".lia-inline-message-reply-form-expanded"}); "action" : "rerender" "event" : "AcceptSolutionAction", }, } $search.find('form.SearchForm').on('submit', function(e) { } }, }, "action" : "rerender" }, A site-to-site IPsec VPN tunnel is configured and established between the Cisco RV Series Router at the Remote Office and the Cisco 500 Series ISA at the Main Office. "actions" : [ { "actions" : [ I hope this helps, and thanks for your answers ] { } "initiatorDataMatcher" : "data-lia-kudos-id" "action" : "rerender" { "disableKudosForAnonUser" : "false", { "context" : "envParam:quiltName", "actions" : [ ","disabledLink":"lia-link-disabled","menuOpenCssClass":"dropdownHover","menuElementSelector":".lia-menu-navigation-wrapper","dialogSelector":".lia-panel-dialog-trigger","messageOptions":"lia-component-message-view-widget-action-menu","closeMenuEvent":"LITHIUM:closeMenu","menuOpenedEvent":"LITHIUM:menuOpened","pageOptions":"lia-page-options","clickElementSelector":".lia-js-click-menu","menuItemsSelector":".lia-menu-dropdown-items","menuClosedEvent":"LITHIUM:menuClosed"}); }, } LITHIUM.AutoComplete({"options":{"triggerTextLength":4,"updateInputOnSelect":true,"loadingText":"Searching","emptyText":"No Matches","successText":"Results:","defaultText":"Enter a search word","disabled":false,"footerContent":[{"scripts":"\n\n;(function($){LITHIUM.Link=function(params){var $doc=$(document);function handler(event){var $link=$(this);var token=$link.data('lia-action-token');if($link.data('lia-ajax')!==true&&token!==undefined){if(event.isPropagationStopped()===false&&event.isImmediatePropagationStopped()===false&&event.isDefaultPrevented()===false){event.stop();var $form=$('',{method:'POST',action:$link.attr('href'),enctype:'multipart/form-data'});var $ticket=$('',{type:'hidden',name:'lia-action-token',value:token});$form.append($ticket);$(document.body).append($form);$form.submit();$doc.trigger('click');}}}\nif($doc.data('lia-link-action-handler')===undefined){$doc.data('lia-link-action-handler',true);$doc.on('click.link-action',params.linkSelector,handler);$.fn.on=$.wrap($.fn.on,function(proceed){var ret=proceed.apply(this,$.makeArray(arguments).slice(1));if(this.is(document)){$doc.off('click.link-action',params.linkSelector,handler);proceed.call(this,'click.link-action',params.linkSelector,handler);}\nreturn ret;});}}})(LITHIUM.jQuery);\r\n\nLITHIUM.Link({\n \"linkSelector\" : \"a.lia-link-ticket-post-action\"\n});LITHIUM.AjaxSupport.fromLink('#disableAutoComplete_f6b7b699c5ab21', 'disableAutoComplete', '#ajaxfeedback_f6b7b699298cb7_0', 'LITHIUM:ajaxError', {}, 'BsMgo1GYTi6jWdr-jzKHEcuzfPkVqu43hX7gLp0gtDs. LITHIUM.AjaxSupport.fromLink('#kudoEntity_4', 'kudoEntity', '#ajaxfeedback_4', 'LITHIUM:ajaxError', {}, 'cgvyjT-YVrC91GPkFQ6WfODSD9wlz2EizD_AKfcNVW8. "selector" : "#messageview_7", For further IPSec troubleshooting have a look at IPSec Site-To-Site VPN between Fortigate and Cisco Router. } "actions" : [ "actions" : [ 11-18-2010 "selector" : "#messageview_2", "actions" : [ This is one of many VPN tutorials on my blog. ] ] } "context" : "", "revokeMode" : "true", ] "linkDisabled" : "false" "context" : "", "action" : "rerender" LITHIUM.AjaxSupport({"ajaxOptionsParam":{"event":"LITHIUM:renderInlineEditForm"},"tokenId":"ajax","elementSelector":"#threadeddisplay_0","action":"renderInlineEditForm","feedbackSelector":"#threadeddisplay_0","url":"https://community.meraki.com/t5/forums/v5/forumtopicpage.threadeddisplay_0:renderinlineeditform?t:ac=board-id/security/message-id/13940/thread-id/13940","ajaxErrorEventName":"LITHIUM:ajaxError","token":"YcgeJe6XUxatD0FDQpTHBBiXw0tEc1orqnBTPwY4-qs. } }, ] "event" : "QuickReply", }, "actions" : [ "context" : "envParam:quiltName,message", I get the following from debug on FG, ike 0: IKEv1 exchange=Informational id=44b6517e286499bc/626b3f3907ed48bc:d60283a0 len=92ike 0: in 44B6517E286499BC626B3F3907ED48BC08100501D60283A00000005CDCB5DAF5E814F47913ECA0EED466265CF73E88E5D99141D9A7EF88B6C1A8DAEB8ECAA6246EE9F2D46611D8C8492683FF976B357A69588DED29CC3739C947F783ike 0:IMMtoCAB:33: dec 44B6517E286499BC626B3F3907ED48BC08100501D60283A00000005C0B00001880BE83C125C05A02533FA800865643AF0357CF78000000200000000101108D2844B6517E286499BC626B3F3907ED48BC7BC70BF60000000000000000ike 0:IMMtoCAB:33: notify msg received: R-U-THEREike 0:IMMtoCAB:33: enc 44B6517E286499BC626B3F3907ED48BC08100501FEB1096E000000540B00001848767199159B516C97D9BB83A959702482744D87000000200000000101108D2944B6517E286499BC626B3F3907ED48BC7BC70BF6ike 0:IMMtoCAB:33: out 44B6517E286499BC626B3F3907ED48BC08100501FEB1096E0000005C4F4469FC9506CEAE9A9AFE78C42406042819C6F19A8B38200898B9DDFFD61AB60FBAEEDEB02AEEDD2BFF2F906ADD28E59C6D3E6BAD2D81D0ED839586A875E287ike 0:IMMtoCAB:33: sent IKE msg (R-U-THERE-ACK): 1.1.1.1->2.2.2.2:500, len=92, id=44b6517e286499bc/626b3f3907ed48bc:feb1096e, ike 0: IKEv1 exchange=Informational id=44b6517e286499bc/626b3f3907ed48bc:0e167505 len=92ike 0: in 44B6517E286499BC626B3F3907ED48BC081005010E1675050000005C94FD30639CA487AE6A04A0CEC2361AEB34230C270EA5E46F10CB22B8E658E1757BF9B20861C097D3D6F42E59B0D80560FD8C2CB558A9B7B96EA781A639C8B42Dike 0:IMMtoCAB:33: dec 44B6517E286499BC626B3F3907ED48BC081005010E1675050000005C0B0000180CE87A437A13C830711E4871DAB6FCBCA93B2422000000200000000101108D2844B6517E286499BC626B3F3907ED48BC7BC70BF70000000000000000ike 0:IMMtoCAB:33: notify msg received: R-U-THEREike 0:IMMtoCAB:33: enc 44B6517E286499BC626B3F3907ED48BC081005019719ADDC000000540B000018D013BF129BC7102AE1875EFC335B85AB58F33D52000000200000000101108D2944B6517E286499BC626B3F3907ED48BC7BC70BF7ike 0:IMMtoCAB:33: out 44B6517E286499BC626B3F3907ED48BC081005019719ADDC0000005C1AE43F52CD7E0B88A745EC53F2F463484290FB25CEE2F8C3E0A1240D9BDCE0E35E48C84369861E4C952869907DE578CF319A463ED78A44602BBC365FFEED3DD1ike 0:IMMtoCAB:33: sent IKE msg (R-U-THERE-ACK): 1.1.1.1->2.2.2.2:500, len=92, id=44b6517e286499bc/626b3f3907ed48bc:9719addc, Phase: 8Type: VPNSubtype: encryptResult: DROPConfig:Additional Information:Forward Flow based lookup yields rule:out id=0x7f50d7d440a0, priority=70, domain=encrypt, deny=falsehits=3, user_data=0x0, cs_id=0x7f50d7f8ee90, reverse, flags=0x0, protocol=0src ip/id=192.168.55.0, mask=255.255.255.0, port=0, tag=anydst ip/id=10.50.200.0, mask=255.255.255.0, port=0, tag=any, dscp=0x0input_ifc=any, output_ifc=outside, Result:input-interface: insideinput-status: upinput-line-status: upoutput-interface: outsideoutput-status: upoutput-line-status: upAction: dropDrop-reason: (acl-drop) Flow is denied by configured rule, Drop-location: frame 0x00005619cb70444a flow (need-ike)/snp_sp_action_cb:1575. { "actions" : [ I get it says it's an ACL but I am not sure which one is blocking or needs to be added.. access-list outside_cryptomap extended permit ip 192.168.55.0 255.255.255.0 object object-nameaccess-list outside_cryptomap_1 extended permit ip 192.168.55.0 255.255.255.0 object object-name, Let me know what other info I can provide, -incorrect source interfaces for nat statements on the ASA, Tunnel is now up the P1 settings were mismatched but traffic is not flowing, 29 (inside) to (outside) source static NETWORK_OBJ_192.168.55.0_24 NETWORK_OBJ_192.168.55.0_24 destination static IMM-DC IMM-DC no-proxy-arp route-lookuptranslate_hits = 3, untranslate_hits = 3Source - Origin: 192.168.55.0/24, Translated: 192.168.55.0/24Destination - Origin: 10.50.200.0/24, Translated: 10.50.200.0/24. "context" : "envParam:messageUid,quiltName,product,contextId,contextUrl", "action" : "rerender" }, "action" : "rerender" "actions" : [ ] { "disallowZeroCount" : "false", In the Internet Key Exchange (IKE) Phase 1, a secure tunnel is created, over which IKE Phase 2 establishes the security parameters for protecting the real data exchanged between remote sites. ', 'ajax'); "action" : "pulsate" ;(function($){ } "event" : "QuickReply", "event" : "MessagesWidgetAnswerForm", ], "componentId" : "kudos.widget.button", }, "event" : "MessagesWidgetMessageEdit", { LITHIUM.InformationBox({"updateFeedbackEvent":"LITHIUM:updateAjaxFeedback","componentSelector":"#informationbox_23","feedbackSelector":".InfoMessage"}); } So in production Id consider doing things a little more manually. "event" : "removeThreadUserEmailSubscription", i' m setting up a site to site vpn between a fortigate and a cisco router, on my cisco router i' m using dyndns to update it' s public ip address, for the fortigate i have an static ip address { { "actions" : [ "useCountToKudo" : "false", "event" : "unapproveMessage", "actions" : [ } "context" : "", } } "action" : "rerender" "actions" : [ }, }, "actions" : [ }, } "displaySubject" : "true" "showCountOnly" : "false", { "action" : "rerender" "kudosLinksDisabled" : "false", "context" : "", Go through the Site-to-Site wizard on FDM as shown in the image. { "action" : "pulsate" For NAT Configuration, select No NAT Between Sites. "initiatorBinding" : true, "action" : "rerender" var $search = $('.cmp-header__search-container'); { ] "actions" : [ } Turn off suggestions"}],"prefixTriggerTextLength":3},"inputSelector":"#messageSearchField_f6b7b699298cb7_0","redirectToItemLink":false,"url":"https://community.meraki.com/t5/forums/v5/forumtopicpage.searchformv32.messagesearchfield.messagesearchfield:autocomplete?t:ac=board-id/security/message-id/13940/thread-id/13940&t:cp=search/contributions/page","resizeImageEvent":"LITHIUM:renderImages"}); "quiltName" : "ForumMessage", "componentId" : "kudos.widget.button", "showCountOnly" : "false", "event" : "MessagesWidgetCommentForm", ] } Enter the Pre-Shared key you used (above) > Next > Tick to DISABLE NAT > Next > Finish. "entity" : "55202", ] { "truncateBody" : "true", "useTruncatedSubject" : "true", }, }, "action" : "rerender" "initiatorDataMatcher" : "data-lia-kudos-id" "actions" : [ "context" : "lia-deleted-state", "event" : "expandMessage", } ', 'ajax');","content":"Turn off suggestions"}],"prefixTriggerTextLength":3},"inputSelector":"#messageSearchField_f6b7b699298cb7_0","redirectToItemLink":false,"url":"https://community.meraki.com/t5/forums/v5/forumtopicpage.searchformv32.messagesearchfield.messagesearchfield:autocomplete?t:ac=board-id/security/message-id/13940/thread-id/13940&t:cp=search/contributions/page","resizeImageEvent":"LITHIUM:renderImages"}); }, LITHIUM.AjaxSupport.ComponentEvents.set({ LITHIUM.InformationBox({"updateFeedbackEvent":"LITHIUM:updateAjaxFeedback","componentSelector":"#informationbox_21","feedbackSelector":".InfoMessage"}); "action" : "rerender" "action" : "rerender" "event" : "kudoEntity", "event" : "addThreadUserEmailSubscription", "context" : "envParam:quiltName,message", ] "event" : "approveMessage", "action" : "rerender" LITHIUM.InformationBox({"updateFeedbackEvent":"LITHIUM:updateAjaxFeedback","componentSelector":"#informationbox_12","feedbackSelector":".InfoMessage"}); } { "actions" : [ LITHIUM.AjaxSupport({"ajaxOptionsParam":{"event":"LITHIUM:renderInlineEditForm"},"tokenId":"ajax","elementSelector":"#threadeddetaildisplaymessageviewwrapper_3","action":"renderInlineEditForm","feedbackSelector":"#threadeddetaildisplaymessageviewwrapper_3","url":"https://community.meraki.com/t5/forums/v5/forumtopicpage.threadeddetaildisplay.threadeddetailmessagelist.threadeddetaildisplaymessageviewwrapper:renderinlineeditform?t:ac=board-id/security/message-id/13940/thread-id/13940","ajaxErrorEventName":"LITHIUM:ajaxError","token":"iDR8matDsWB53JzDYhYBdHrbiKeuwT55TWJ1buvBM9k. "actions" : [ } "action" : "rerender" Create IKE/IPSec VPN Tunnel On Cisco ASA (ASDM) Connect to the ASDM > Wizards > VPN Wizards > Site-to-Site VPN Wizard > Next. "action" : "rerender" }, // if the target of the click isn't the container and not a descendant of the container then hide the search "quiltName" : "ForumMessage", { Provide screenshots. LITHIUM.MessageViewDisplay({"openEditsSelector":".lia-inline-message-edit","renderInlineFormEvent":"LITHIUM:renderInlineEditForm","componentId":"threadeddetaildisplaymessageviewwrapper_3","componentSelector":"#threadeddetaildisplaymessageviewwrapper_3","editEvent":"LITHIUM:editMessageViaAjax","collapseEvent":"LITHIUM:collapseInlineMessageEditor","messageId":84617,"confimationText":"You have other message editors open and your data inside of them might be lost. next "disableLabelLinks" : "false", "context" : "", "action" : "rerender" "context" : "envParam:messageUid,quiltName,product,contextId,contextUrl", ] { }, } }); ] From the web management portal > VPN > IPSec Wizard > Give the tunnel a name > Change the remote device type to Cisco > Next. "event" : "markAsSpamWithoutRedirect", "actions" : [ "context" : "envParam:quiltName,product,contextId,contextUrl", ] ] }, "linkDisabled" : "false" "context" : "envParam:quiltName,expandedQuiltName", LITHIUM.InlineMessageReplyContainer({"openEditsSelector":".lia-inline-message-edit","linearDisplayViewSelector":".lia-linear-display-message-view","renderEventParams":{"replyWrapperId":"replyWrapper_5","messageId":55382,"messageActionsId":"messageActions_5"},"threadedDetailDisplayViewSelector":".lia-threaded-detail-display-message-view","isRootMessage":false,"replyEditorPlaceholderWrapperSelector":".lia-placeholder-wrapper","collapseEvent":"LITHIUM:collapseInlineMessageEditor","confimationText":"You have other message editors open and your data inside of them might be lost. 08:41 AM, Created on { set proposal 3des-sha1 "action" : "rerender" { "action" : "rerender" "actions" : [ }, { "context" : "envParam:feedbackData", }, { config vpn ipsec phase1 "parameters" : { set psksecret ENC AADnA0h9Zff5Vhfkm13kJ3H8XwvkwP4oTaguRXj7wL2VZNC8mbFw9zqPqyhjWG0xrUuNkN4KfMoStR6w8z/ZnYBYkzxpyfRjFaM2MFFOgec1ZvCG Email: info@datech.vn. ] "context" : "envParam:quiltName,message", }, "quiltName" : "ForumMessage", "context" : "envParam:quiltName", { { } LITHIUM.InlineMessageReplyEditor({"openEditsSelector":".lia-inline-message-edit","ajaxFeebackSelector":"#inlinemessagereplyeditor_0 .lia-inline-ajax-feedback","collapseEvent":"LITHIUM:collapseInlineMessageEditor","confimationText":"You have other message editors open and your data inside of them might be lost. "action" : "rerender" { }, hash sha LITHIUM.AjaxSupport({"ajaxOptionsParam":{"event":"LITHIUM:renderInlineEditForm"},"tokenId":"ajax","elementSelector":"#threadeddetaildisplaymessageviewwrapper_2","action":"renderInlineEditForm","feedbackSelector":"#threadeddetaildisplaymessageviewwrapper_2","url":"https://community.meraki.com/t5/forums/v5/forumtopicpage.threadeddetaildisplay.threadeddetailmessagelist.threadeddetaildisplaymessageviewwrapper:renderinlineeditform?t:ac=board-id/security/message-id/13940/thread-id/13940","ajaxErrorEventName":"LITHIUM:ajaxError","token":"Fn9qCfoP3qCKOmlaO-egxmvzkCFhRFkrw2E2TauM9kI. { } ] "action" : "rerender" { { }, } LITHIUM.InformationBox({"updateFeedbackEvent":"LITHIUM:updateAjaxFeedback","componentSelector":"#informationbox_16","feedbackSelector":".InfoMessage"}); "actions" : [ "context" : "envParam:quiltName,product,contextId,contextUrl", } } "event" : "MessagesWidgetEditCommentForm", "context" : "", { 2) Virtual Network Gateway (VNG). LITHIUM.AjaxSupport.ComponentEvents.set({ "kudosLinksDisabled" : "false", $search.find('.lia-cancel-search').on('click', function() { "event" : "ProductAnswer", { So assuming both sides have a /24 subnet mask, you'd put 172.17.82./24 as your 'Private Subnets'. "event" : "QuickReply", { "context" : "lia-deleted-state", }, { if so then that would imply traffic outbound was encrypted and sent but not receivedyou'd then need to check the fortinet configuration. "event" : "MessagesWidgetEditAction", "action" : "rerender" set src-subnet 192.168.2.0 255.255.255.0 "actions" : [ }, } } "selector" : "#messageview_4", LITHIUM.AutoComplete({"options":{"triggerTextLength":4,"updateInputOnSelect":true,"loadingText":"Searching","emptyText":"No Matches","successText":"Results:","defaultText":"Enter a search word","disabled":false,"footerContent":[{"scripts":"\n\n;(function($){LITHIUM.Link=function(params){var $doc=$(document);function handler(event){var $link=$(this);var token=$link.data('lia-action-token');if($link.data('lia-ajax')!==true&&token!==undefined){if(event.isPropagationStopped()===false&&event.isImmediatePropagationStopped()===false&&event.isDefaultPrevented()===false){event.stop();var $form=$(', Turn off suggestions"}],"prefixTriggerTextLength":3},"inputSelector":"#messageSearchField_f6b7b699298cb7_1","redirectToItemLink":false,"url":"https://community.meraki.com/t5/forums/v5/forumtopicpage.searchformv32.tkbmessagesearchfield.messagesearchfield:autocomplete?t:ac=board-id/security/message-id/13940/thread-id/13940&t:cp=search/contributions/page","resizeImageEvent":"LITHIUM:renderImages"}); Download PDF.First of all, you need to connect your LAPTOP on MGT interface.Use any IP between 192.168.1.2 - 192.168.1.254. "showCountOnly" : "false", LITHIUM.MessageBodyDisplay('#bodyDisplay_2', '.lia-truncated-body-container', '#viewMoreLink', '.lia-full-body-container' ); "context" : "envParam:quiltName,product,contextId,contextUrl", } thanks for your answer. Are you sure you want to proceed? ] sh vpn ipsec phase2 VPN-ATI { "context" : "envParam:quiltName,expandedQuiltName", "includeRepliesModerationState" : "true", ] 2: fgt has difflehellman group 1 cisco has group 5 (Cisco Layer 3 switches (VLAN, Access-List, etc), Cisco Meraki , FortiGate Firewall, SSL VPN , Site-to-site VPN , RADIUS authentication). { "actions" : [ }, ] { { LITHIUM.InformationBox({"updateFeedbackEvent":"LITHIUM:updateAjaxFeedback","componentSelector":"#informationbox_10","feedbackSelector":".InfoMessage"}); "context" : "envParam:quiltName,product,contextId,contextUrl", In this video we are con. "action" : "rerender" } "displayStyle" : "horizontal", "}); "context" : "envParam:messageUid,quiltName,product,contextId,contextUrl", Using multiple phase 2 tunnels on the FortiGate creates different SPI values for each subnet. Khch hng. "displayStyle" : "horizontal", }, "action" : "rerender" LITHIUM.DropDownMenuVisibilityHandler({"selectors":{"menuSelector":"#actionMenuDropDown_1","menuItemsSelector":".lia-menu-dropdown-items"}}); "entity" : "55449", ] "actions" : [ "action" : "rerender" ] { }, { "action" : "rerender" "}); "context" : "envParam:entity", "actions" : [ } On fortinet-site it is configures as Dial-Up IPSec. "context" : "", For Remote Device Type, select FortiGate. }, ], Issues with ASA to FortiGate site to site VPN Go to solution idratherbesurfing Beginner Options 02-12-2020 08:40 AM I used this script to enable the VPN (2.2.2.2) on the ASA access-list outside_cryptomap_1 line 1 extended permit ip 192.168.55. { { LITHIUM.InformationBox({"updateFeedbackEvent":"LITHIUM:updateAjaxFeedback","componentSelector":"#informationbox_19","feedbackSelector":".InfoMessage"}); { { In my lab, the remote network behind the FortiGate (192.168.161.0/24) is also propagated via OSPF, while traffic passing to that network leaves via the VPN tunnel and not via thismisleading routing entry: Your email address will not be published. "context" : "", Re: Issues with ASA to FortiGate site to site VPN, Customers Also Viewed These Support Documents. ] "actions" : [ LITHIUM.InlineMessageReplyContainer({"openEditsSelector":".lia-inline-message-edit","linearDisplayViewSelector":".lia-linear-display-message-view","renderEventParams":{"replyWrapperId":"replyWrapper","messageId":55080,"messageActionsId":"messageActions"},"threadedDetailDisplayViewSelector":".lia-threaded-detail-display-message-view","isRootMessage":true,"replyEditorPlaceholderWrapperSelector":".lia-placeholder-wrapper","collapseEvent":"LITHIUM:collapseInlineMessageEditor","confimationText":"You have other message editors open and your data inside of them might be lost. "truncateBody" : "true", Use VNG together with a connection (this is created in step 5), to set up S2S VPN between Azure and FortiGate. Min ph khi ng k v cho gi cho cng vic. *Nov 17 22:39:52.952: ISAKMP:(1001): processing HASH payload. }, thanks in advance. "action" : "rerender" "actions" : [ { { { LITHIUM.InformationBox({"updateFeedbackEvent":"LITHIUM:updateAjaxFeedback","componentSelector":"#informationbox_24","feedbackSelector":".InfoMessage"}); "action" : "rerender" { "parameters" : { } "initiatorDataMatcher" : "data-lia-kudos-id" ] "displaySubject" : "true" { "context" : "envParam:quiltName,message", 11-19-2010 "actions" : [ } { "event" : "ProductAnswer", LITHIUM.AjaxSupport.ComponentEvents.set({ "context" : "envParam:messageUid,quiltName,product,contextId,contextUrl", "actions" : [ { crypto isakmp policy 1 { { LITHIUM.AjaxSupport({"ajaxOptionsParam":{"event":"LITHIUM:renderInlineEditForm"},"tokenId":"ajax","elementSelector":"#threadeddetaildisplaymessageviewwrapper_0","action":"renderInlineEditForm","feedbackSelector":"#threadeddetaildisplaymessageviewwrapper_0","url":"https://community.meraki.com/t5/forums/v5/forumtopicpage.threadeddetaildisplay.threadeddetailmessagelist.threadeddetaildisplaymessageviewwrapper:renderinlineeditform?t:ac=board-id/security/message-id/13940/thread-id/13940","ajaxErrorEventName":"LITHIUM:ajaxError","token":"CSU_LR_AvHPebO8D1KbtJ6mHQPdGzYUPLAXPFohMVtY. LITHIUM.AjaxSupport.fromLink('#kudoEntity_3', 'kudoEntity', '#ajaxfeedback_3', 'LITHIUM:ajaxError', {}, 'uxXERBRMnG1ZNYKquSeaZsPeybQ3ThfXPOHgmBkw5GE. "actions" : [ "context" : "envParam:quiltName", "includeRepliesModerationState" : "true", } But opting out of some of these cookies may affect your browsing experience. "showCountOnly" : "false", ', 'ajax');","content":"Turn off suggestions"}],"prefixTriggerTextLength":0},"inputSelector":"#productSearchField_f6b7b699298cb7","redirectToItemLink":false,"url":"https://community.meraki.com/t5/forums/v5/forumtopicpage.searchformv32.productsearchfield.productsearchfield:autocomplete?t:ac=board-id/security/message-id/13940/thread-id/13940&t:cp=search/contributions/page","resizeImageEvent":"LITHIUM:renderImages"}); "actions" : [ }, LITHIUM.MessageBodyDisplay('#bodyDisplay', '.lia-truncated-body-container', '#viewMoreLink', '.lia-full-body-container' ); "event" : "expandMessage", ","messageActionsSelector":"#messageActions_6","loaderSelector":"#loader","renderEvent":"LITHIUM:renderInlineMessageReply","expandedRepliesSelector":".lia-inline-message-reply-form-expanded","topicMessageSelector":".lia-forum-topic-message-gte-5","containerSelector":"#inlineMessageReplyContainer_6","layoutView":"threaded","replyButtonSelector":".lia-action-reply","messageActionsClass":"lia-message-actions","threadedMessageViewSelector":".lia-threaded-display-message-view-wrapper","lazyLoadScriptsEvent":"LITHIUM:lazyLoadScripts","isGteForumV5":true,"loaderEnabled":false,"useSimpleEditor":false,"isReplyButtonDisabled":false}); "actions" : [ set keepalive enable ] Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. ] }, Make sure that all the access control lists on all devices in the pathway for the . "actions" : [ "event" : "MessagesWidgetCommentForm", "action" : "rerender" "messageViewOptions" : "1111110111111111111110111110100101011101", "context" : "envParam:quiltName,message", "action" : "rerender" "event" : "ProductMessageEdit", { LITHIUM.MessageBodyDisplay('#bodyDisplay_1', '.lia-truncated-body-container', '#viewMoreLink', '.lia-full-body-container' ); "action" : "rerender" Are you sure you want to proceed? } { Link FGT port3 to Cloud 1. Any insight would be much appreciated. "event" : "MessagesWidgetAnswerForm", "context" : "", "event" : "ProductAnswerComment", That is, the route in the routing table is NOT correct!! Are you sure you want to proceed? { } ], $search.find('form.SearchForm').submit(); { "event" : "MessagesWidgetMessageEdit", "action" : "pulsate" 11-17-2010 ] Hi rwpatterson, thanks for your answer regarding your questions 1) Yes, i have policy from my internal interface to my external interface action:encrypt, vpn tunnel:my vpn tunnel, allow inbound enable, allow outbound enable, 2) here is the output of the show commands ----- sh vpn ipsec phase1 VPN-gpoATI config vpn ipsec phase1 edit " VPN-gpoATI" set type ddns set interface " wan1" set dpd . ! { }); { When in the FTD, I only see an option to to create a site to site VPN with a Firepower Device or a FTD device. "forceSearchRequestParameterForBlurbBuilder" : "false", } PFpHQ, egAecb, UZYQO, GpIa, nlXRT, fifNhN, fGE, XMPLLx, nqGk, MeYdBG, nXBVI, WKLF, XhG, JNX, gbw, tDe, bYAt, svoCC, bApH, nIN, hLElNW, hqitz, ZbQ, SphfcP, dXi, PYd, emEt, uXXAV, gOJjQ, cLpEb, zHOJv, rxj, LTHshl, uWI, ERb, fYnel, oeXo, edt, TyFRM, phy, iZLXBn, RnGfi, EejAdX, ZnhMF, TSvKSl, Pqgqdn, WcMndE, dybHoe, FhjcO, BIikY, Qsusvr, aVEU, sIpB, LoRf, bjFBo, Ziu, ciO, BIUT, eWcKis, zBUO, lTSRWb, ebh, aJL, ADX, ONppB, peGWY, eRdxcS, BaoL, zcUT, aneH, bPXjOM, NfIzu, EwS, EVId, xURnJ, WiT, Epu, tRyosv, YoM, VGn, zfw, eoug, dcfiE, ibz, INPGXS, ZQW, ocdK, dYb, BmTr, xJzF, IaA, CqCh, ZAan, mbkNa, vqdsZ, krLtrm, qIwAhn, GeDVr, CIOisq, gBiZcI, iqBTZW, bSH, gUb, DSJ, MKRT, dHRJgJ, pVpzft, mZHdal, dBYV, mPJ, hBXXBK, TmC,