Fortinet ssl vpn simple config

来源:互联网 发布:淘宝优惠卷怎么赚钱 编辑:程序博客网 时间:2024/04/30 19:56
There are some steps to make a SSLVPN works:

1/ Create as many user accounts as you need

2/ Create a User Group to contain the users for SSLVPN authentication
[a.] Make sure the Type for User Group is set to "SSL VPN".
[b.] In the "SSL-VPN User Group Options" section, check to enable SSL-VPN Tunnel Service and/or enable Web Application (select which protocol)
[c.] Check to enable cache clean (*optional*)

3/ In VPN section, click SSL -> Config tag
[a.] Check to enable SSL-VPN
[b.] Leave the port no. as 10443 or change it as you like (*optional*)
[c.] Set a "Tunnel IP Range" in your internal subnet like 10.0.0.100-10.0.0.120 (*MUST*)

4/ Leave other options as default value

5/ Create a SSLVPN policy
[a.] From port2 (external) to port1 (internal)
[b.] Source address=0.0.0.0/0.0.0.0, Destination address=[your internal netwok] or 0.0.0.0/0.0.0.0
[c.] Set Action as "SSL-VPN"
[d.] Include the SSLVPN User Group to this policy