FortiClient
FortiClient proactively defends against advanced attacks. Its tight integration with the Security Fabric enables policy-based automation to contain threats and control outbreaks. FortiClient is compatible with Fabric-Ready partners to further strengthen enterprises’ security posture.
carabhavi
Staff
Staff
Article Id 195957

Description

 

This article describes how to configure multiple gateway IPs for the SSL VPN or IPsec Dial Up VPN, so that if one WAN link is down, still user can still connect to the VPN via the secondary gateway IP without the user changing the gateway IP manually.

 

Scope

 

FortiClient.

Solution


Refer to the image below:

 
By option '+ Add Remote Gateway', adding multiple gateway IPs is possible.
 
FortiClient uses the gateway IP, which has fewer hops from the ping reply as primary, and if the ping is disabled on the interface, then it will be a random selection.

Related document:
Selecting closest gateway for VPN connection