Created on ‎06-18-2020 09:51 AM Edited on ‎01-04-2022 11:49 AM By Anonymous
Description
This article describes how to disable local network access for SSL VPN while split tunnelling is disabled.
Solution
This feature for SSL-VPN can be set up to control local LAN traffic, in order to forward it all to the FortiGate.
Enable exclusive-routing via CLI inside the preferred portal, full-access in this example:
# config vpn ssl web portal
edit full-access
set exclusive-routing enable
next
end
Here there is an example of the feature that works with FortiClient.
Windows network setting :
- Local LAN 192.168.100.19/21.
- SSL VPN address 10.212.134.200.
Related Articles
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.