FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
ymasaki
Staff
Staff
Article Id 197667

Description


This article describes how to configure Dialup VPN between two FortiGates.

 

Scope

 

FortiGate.

Solution

 

The FortiGate can be configured to have a point-to-multipoint Dialup VPN.


Here is the Step by Step guide:

  1. Phase1 Configuration (Dialup Server and Client):

 

 
Note:
For versions above v7.2.8, only one DH group should be selected on both Phase 1 and  2 between FortiGate and FortiClient, when configuring IPsec dial-up in aggressive mode. In the above screenshots, 14 and 5 are checked but need to only select one of them on both sides i.e FortiGate and FortiClient
 
  1. Phase 2 Selectors Configuration (Dialup Server and Client)
 
 
  1. Firewall Policies for VPN:
 
 
  1. Static and Dynamic Routes for Dialup VPN: