Skip to main content
Mike_Berube
New Member
September 8, 2010
Question

SSL VPN connection to share network folder

  • September 8, 2010
  • 10 replies
  • 9818 views
Is it possible to create a bookmark or other way to permit the SSL VPN connection to access a shared folder on an internal server? What I would like it for a client to connect to SSL VPN Web and have an access to a folder so that he can dump or retrieve files. The folder should be the only thing the client has access to. TY Mike

    10 replies

    Carl_Wallmark
    New Member
    September 8, 2010
    Yes, its possible, use web mode, and create a bookmark and select CIFS.
    Mike_Berube
    New Member
    September 9, 2010
    What service do I associate it to in my policy? TY Mike
    Carl_Wallmark
    New Member
    September 9, 2010
    create policy like this: WAN1 -> Internal : Action SSL : Service Any
    Mike_Berube
    New Member
    September 9, 2010
    create policy like this: WAN1 -> Internal : Action SSL : Service Any
    I have Enable Identity Based Policy checked so my user group has services configured to it. Any is not available in the options. I’m guessing I need to specify services for what I need to do. Or am I missing something?
    rwpatterson
    New Member
    September 9, 2010
    Create your own 445 (NetBIOS over TCP/IP). (Source port range is 1024-65535, not 445-445!)
    Mike_Berube
    New Member
    September 9, 2010
    I would guess it’s 445 but I don’t see a predefined 445 port. I find that bizarre that it would not be predefined if it’s offered in the portal bookmark. If not 445 then what should I use? Second, in the portal can I define a full path? \\servername\share\share1? TY Mike
    Mike_Berube
    New Member
    September 9, 2010
    No, it does not work but I did find the proper port and then associated it to the proper predefined service. The port is 139 witch is associated to SAMBA. I deleted my custom port when I found it and replaced it with SAMBA and bingo it works. Last question associated to this, when login in to the share I need to enter a user and password to access it. To work I must enter the domain name before the user name. Is there a way to predefine that in the firewall so that the end user does not have to enter the domain name, just his user and password? TY Mike
    rwpatterson
    New Member
    September 9, 2010
    I don' t believe so, since the FGT isn' t truly CIFS ' aware' .
    Mike_Berube
    New Member
    September 9, 2010
    I did not think so. If anybody else has a solution to the domain name issue feel free to share. :-) Last note to help others. The path setup in the bookmark must be //servername/share/ and not \\servername\share\. Thanks to all for your help. Mike
    rwpatterson
    New Member
    September 9, 2010
    A.K.A. ' Linux' style as opposed to ' Windoze' style
    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!