Fortinet black logo

New Features

Allow IPsec DPD in FGSP members to support failovers 7.0.8

Copy Link
Copy Doc ID 4f6cd3c1-22cb-11eb-96b9-00505692583a:854715
Download PDF

Allow IPsec DPD in FGSP members to support failovers 7.0.8

In conjunction with support for FGSP per-tunnel failover for IPsec 7.0.8, configuring DPD (dead peer detection) on an FGSP member is permitted. This allows a failed FGSP member to send out DPD probes during failover to detect unreachable remote peers and to flush the corresponding tunnels.

For more information about this feature, see Allow IPsec DPD in FGSP members to support failovers.

Note

This topic uses config system standalone-cluster to configure the FGSP peers. In FortiOS 7.0, the peers are configured using config system standalone-cluster and config system cluster-sync.

Allow IPsec DPD in FGSP members to support failovers 7.0.8

In conjunction with support for FGSP per-tunnel failover for IPsec 7.0.8, configuring DPD (dead peer detection) on an FGSP member is permitted. This allows a failed FGSP member to send out DPD probes during failover to detect unreachable remote peers and to flush the corresponding tunnels.

For more information about this feature, see Allow IPsec DPD in FGSP members to support failovers.

Note

This topic uses config system standalone-cluster to configure the FGSP peers. In FortiOS 7.0, the peers are configured using config system standalone-cluster and config system cluster-sync.