Skip to main content
sebastien
New Member
June 15, 2020
Question

Informations about VPN SSL Tunneling

  • June 15, 2020
  • 1 reply
  • 3785 views

Hello,

 

I tried to create a VPN with SSL-Tunneling and I have several questions. Is there a need to open ports on an isp in VPN-SSL?

the configuration as in this documentation is in 10443 for the vpn and then 443 in setting for access to the fortinet management interface.

 

https://docs.fortinet.com...tunnel-for-remote-user

But even if I register on forticlient "myIPpublic: 10443" I cannot access the establishment of the connection, in fact it finds nothing. Thank you.

 

    1 reply

    ede_pfau
    SuperUser
    SuperUser
    June 16, 2020

    Then exchange both ports, they can be chosen randomly:

    change admin port to 37443, SSLVPN to 443

     

    Incoming tcp/443 should be allowed with all ISPs, high ports (> 1023) not necessarily.

    sebastien
    sebastienAuthor
    New Member
    June 17, 2020

    Thank you very much

     

    i have another questions, but i will make video, because i can go on the website SSL-VPN, but i don't have autorization when i want to connect with my login-password, and i don't know why.

     

    i opened 443 on my isp and i can go to MY_IP_PUBLIC:443 

     

    Thx very much!

    ede_pfau
    SuperUser
    SuperUser
    June 17, 2020

    What is your SSLVPN setup? (post in text mode)

    In the policy from WAN to SSL.root, do you've got a user group for authentication?