Fortigate SSL VPN Basic

 Configuration steps:


1. Create a SSL VPN user Group for local users or points to a remote group.














2. Create or edit predefined SSL-VPN portal, configure SSL VPN mode, VPN pool and split tunneling.
    equivalent of ASA Group Policy 















Forti OS 7.x
 Enabled Based on Policy Destination  --- Include in ASA
 Enabled for Trusted Destinations         --- Exclude in ASA










4. Configure SSL-VPN Settings, specify WAN interface, certificate and authentication.















5. Create Security Policy, specify Interfaces and Source as below:















Split-tunnel

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Enabling-split-tunnel-feature-for-SSL-VPN/ta-p/198108


User access VPN portal via browser first time.











https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-SSL-VPN-Troubleshooting/ta-p/189542

Comments

Popular posts from this blog

Firepower FMC and FTD troubleshooting

ASA IKEv1 VPN troubleshooting Steps and Tips

Firepower 2100/1100 FTD/ASA initial setup, reimage, upgrade.