Skip to main content
Tedd
New Member
December 24, 2020
Question

Dialup IPsec VPN user management

  • December 24, 2020
  • 1 reply
  • 3192 views

Hello All, I have an issue about Dialup IPsec VPN user management, I am wondering if I can setup one IPsec VPN with multiple dialup user account in one user group. And with different account have different permission to access LAN ? Or is it possible to setup multiple dialup IPsec VPN Tunnel with one WAN interface ? Any help and support is appreciated

    1 reply

    sw2090
    SuperUser
    SuperUser
    December 28, 2020

    Should both be possible some way ;)

     

    basically you can create many dial up tunnels on one wan (the bandwith is the limit ;) ).

    And you cannot have more then 1000 concurrent users (i.e. dialled in at the same time) on one dial up vpn.

    If you do this way you should use local/remote id to unify the tunnel to make sure the FGT choses the right one upon client dialling in.

    you can create a group and add users to it and then use the group for auth in ipsec.

    And at least from FortiOS 6.2 on you should be able to use users as objects in policies.