Chapter 10 IPsec VPN : Dynamic DNS configuration : Configure the fixed-address VPN peer : Configuring branch_1 security policies : Defining address ranges for branch_1 security policies
  
Defining address ranges for branch_1 security policies
As with branch_2 previously, branch_1 needs address ranges defined as well. See “Defining policy addresses”.
1. Go to Policy & Objects > Objects > Addresses.
2. Select Create New.
3. Enter the following information, and select OK.
Name
Enter branch_2_internal. A meaningful name for the private network behind the branch_2 FortiGate unit.
Type
Select Subnet.
Subnet / IP Range
Enter 10.10.10.0/24. Include the netmask or specify a specific range.
Interface
Select internal. This is the interface on this FortiGate unit that will be handling with this traffic.
4. Define an address name for the IP address and netmask of the private network behind the remote peer.
5. Select Create New.
6. Enter the following information, and select OK.
Name
Enter branch_1_internal. A meaningful name for the private network behind the branch_1 peer.
Type
Select Subnet.
Subnet / IP Range
Enter 192.168.1.0/24. Include the netmask or specify a specific range.
Interface
Select any. The interface on this FortiGate unit that will be handling with this traffic. If you are unsure, or multiple interfaces may be handling this traffic use any.