FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
spoojary
Staff
Staff
Article Id 230207
Description

This article describes how to change the security of the bookmark for VPN users using RDP. If bookmarks are saved with RDP type, it takes the security as  Standard RDP encryption.

Scope FortiGate, all firmware.
Solution

Suppose in the portal there are predefined bookmarks for all SSL VPN users.

 

bookmarks.PNG

 

The type of the bookmark is RDP and by default, it uses Standard RDP encryption for Security.

 

asdadad.PNG

 

 

To change the RDP type where it uses Network level authentication, it is necessary to select the security drop-down, and in that, the Network level authentication security for the RDP will be visible.

 

nla.PNG

 

Once selected, the users using RDP will have network-level authentication.

 

Note:

Sometimes, the server tries to RDP into, does not support Standard RDP encryption, and the 'Allow server to choose the type of security' option is needed here for the bookmark to work.

 

There are scenarios where users do not have the username and password for the RDP server.

By using the SSL-VPN login without giving the username and password of the server users can use the SSL VPN credentials to connect to the server 192.168.1.1 over RDP and have to make sure the server allows RDP connections for the users.

 

sslvpn1.png

 

The picture below shows that the SSL VPN user details were appended to log in to the server. 

 

screensslvpn.png