site to site vpn connected, but can't ping to remote hosts
I've created an IPsec site to site tunnel with a fortigate firewall as follow
LOCAL PC <=> ER605 <=> NAT ROUTER <=== INTERNET ===> FORTIGATE FIREWALL <==> REMOTE PC
LOCAL PC: 192.168.63.100/24
REMOTE PC: 192.168.199.100/24
ER605 WAN: 192.168.1.100
NAT ROUTER LAN: 192.168.1.1
IPsec SA show both the in and out direction tunnel is successfully connected.
but I can't ping from the local PC (192.168.63.100) to remote PC (192.168.199.100)
firewall rule is already setup to enable "All" services from vpn tunnel interface to the remote PC
any routing or ACL settings need to be done at the ER605 to make this work?