Description | This article describes an alternative configuration to allow Internet connection in the Client using an IPsec LT2P dial-up VPN. |
Scope | FortiGate, Windows. |
Solution |
The split-tunnel feature is not well supported for a Native IPsec LT2P dial-up VPN configuration. However, if it is necessary to allow internet connectivity on the client side, it is possible to modify the Windows VPN configuration to not retrieve the Internet gateway from the Remote Network and use the actual machine adaptor.
The next example is done in Windows 11; for Windows 10 refer to the next article: Technical Tip: How to enable split-tunneling in Windows 10/11 (L2TP/PPTP VPN). - Fortinet Community.
Note: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.