Description | This article explains how to configure an IPsec tunnel Remote Access using Wizard in FortiGate v7.6.x and lower 7.x.x versions. |
Scope |
FortiGate 7.2.x, and 7.0. FortiClient 7.4.3. |
Solution |
Scenario:
Create an IPsec VPN with the VPN Wizard on FortiGate:
Version 7.6.2:
The incoming interface (connected to the Internet) and the local interface (connected to the LAN) must be declared. A pool for remote user connections must be created, along with user/group access for remote connections. The Split Tunneling option ensures internal resources remain reachable.
Configure the IPsec VPN parameters and policies, then validate the configuration.
Lower versions than 7.6.x.
The configuration remains similar to version 7.6.x, but the GUI differs (e.g., classic view in 7.4.7).
After using the VPN Wizard, navigate to VPN -> IPsec Tunnels and double-click the VPN to verify parameters. Ensure XAUTH is enabled in the wizard to match the user group for VPN access.
Phase 2 Selector Parameters:
Configuration Validation: Use FortiClient 7.4.3 (compatible with these FortiGate versions). Replicate same parameters on it.
Parameters on FortiClient:
Testing Connectivity:
On a Windows device:
Related articles: |
- Mark as Read
- Mark as New
- Bookmark
- Permalink
- Report Inappropriate Content
Excellent @lfernando ! keep it up!
- Mark as Read
- Mark as New
- Bookmark
- Permalink
- Report Inappropriate Content
Great job Fernando! thank you so much for your valuable contribution! @lfernando