We have an issue with the connection between our Mikrotik and Fortigate on our partner site. Now the status is “established”, but we can ping from Mikrotik site Fortigate network. Our partner says that they can see some traffic and can able to ping our site.
Could you please help us to determinate a problem?
Also we crated NAT rule and allow all icmp, tcp and upd traffic:
/ip firewall nat
add action=accept chain=srcnat src-address =Mikrotik dst-address-list=FortiGate
Also we have destination NAT rules for IPsec traffic that are forwarding the IPsec traffic to a local IP address - xxx.xxx.xx.xx. It's our internal VPN Server. It might be blocking traffic and redirecting it to an internal server. But we also have one more VPN Tunnel with same settings and it working fine 2 years. So, NAT rule does not prevent him from. Please help