Athena NGFW (previously known as Network Secure) provides comprehensive protection for every network perimeter, ensuring the safety of your valuable assets, data, and users from emerging threats.
Step 2.Configure a default route to connect to the Internet.
Step 3.Create an IPsec VPN tunnel.
Go to VPN > IPsec Tunnels, click Create New, and select IPsec Tunnel, as shown in the following figure.
On the VPN Creation Wizard page, specify the name, select a custom template, and click Next.
Configure the network, authentication, phase 1, and phase 2 settings as required, as shown in the following figures.
If there is a NAT between the Athena NGFW and Fortinet firewalls, you must specify Local ID.
Step 4.Configure a security policy to allow business traffic from zones associated with the Internet-facing interface, internal-facing interface, and tunnel interface.
Step 5.Configure a route to route traffic to the tunnel interface.
1.When OSPF/BGP is used, you need to go to the backend of the Fortinet firewall to enable mut-ignore of the tunnel interface. Otherwise, an OSPF connection may fail to be established with the Athena NGFW firewall.
2.When OSPF/BGP is used and BFD is enabled, you need to go to the backend of the Fortinet firewall to enable the tunnel interface and the BFD feature of the OSPF router. Otherwise, BFD sessions may fail to be established with the Athena NGFW firewall.