| Description |
This article describes how to change the security of the bookmark for VPN users using RDP. If bookmarks are saved with RDP type, it takes the security as Standard RDP encryption. |
| Scope | FortiGate, all firmware. |
| Solution |
Suppose in the portal there are predefined bookmarks for all SSL VPN users.
The type of the bookmark is RDP and by default, it uses Standard RDP encryption for Security.
To change the RDP type where it uses Network level authentication, it is necessary to select the security drop-down, and in that, the Network level authentication security for the RDP will be visible.
Once selected, the users using RDP will have network-level authentication.
Note: Sometimes, the server tries to RDP into, does not support Standard RDP encryption, and the 'Allow server to choose the type of security' option is needed here for the bookmark to work.
There are scenarios where users do not have the username and password for the RDP server. By using the SSL-VPN login without giving the username and password of the server users can use the SSL VPN credentials to connect to the server 192.168.1.1 over RDP and have to make sure the server allows RDP connections for the users.
The picture below shows that the SSL VPN user details were appended to log in to the server.
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.