Fortinet has added a special note in the release notes of FortiOS 7.0 as follow:
Unfortunately the second point does not clearly state which policy exactly needs to be changed.
Here is a screenshot of the changed policy:
As you can see, the policy from the l2tp client to the lan has been changed and contains now the new interface named l2t.root (or l2t.VDOM name if VDOMs are used) as source interface.
The second policy which points to the wan with service L2TP still uses the IPSEC tunnel (named l2tp) as source interface and should not be changed to l2t.root interface.
1,538 total views, 9 views today