SSLVPN on VDOM
I pressured my FortiNet rep into giving me a more fully functional trial license with some VDOMs so I could figure out how to configure VDOMs. I've got the basic stuff configured. I've figured out how to make the connections between the Root and the 2 VDOMs under the root. I've figured out how to create a VIP from the root to 1 of the VDOMs for web hosing. Now I'm trying to figure out SSLVPN. One of my VDOMs will run SSLVPN (let's say VDOM-B). I've followed the directions here https://community.fortinet.com/t5/FortiGate/Technical-Tip-SSL-VPN-access-to-multiple-VDOMs/ta-p/223709 to tell that VDOM it's going to run on port 6443 as well as created all the rules shown in the link.
This is all being done within EVE-NG, it's a purely secluded network, no real traffic gets in or out.
On a system that I'm trying to 'vpn' with into FortiGate, If I try to browse to https://40.64.58.147:6443 (purely made up IP one of the great things about EVE-NG is the ability to use 'real' IPs) and I have a sniffer running, I see the traffic coming in on both the Root and VDOM-B. However, I'm not seeing any traffic going back out and I never get a login page.
When I check the SSL-VPN settings of VDOM-B, there is a message saying "the legacy SSL-VPN web mode feature is disabled globally. Web mode will not be accessible in portals" so I figure 'ok, not really a site here I'll try to connect with a VPN client'. So I get a client within EVE-NG loaded up with the FortiClient VPN ( 7.4.1.1736 if it makes any difference) and then I configured the VPN settings. I tell it the remote gateway is 40.64.58.147, I check customize port and put in 6443. I tell the FortiClient VPN to connect and it flashes for a second and then nothing. I don't even think it's trying to connect. The FortiClient logs are useless, even on debug. They just say 'client disconnected'. When I have a debug running on root, I don't even see a connection attempt that's being made to the FortiGate, so I think the FortiClient VPN isn't even trying to connect.
Any ideas?
