FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
naveenk
Staff
Staff
Article Id 198679

Description

 

This article describes how limiting the IPSec VPN users to multiple logins.

 

Scope

 

FortiGate.

Solution


Limiting IPSec VPN users(local users) to one connection at a time is not currently supported.
However, the feature is available for SSL VPN.


It can be achieved by configuring a specific SSL VPN web portal.

See the example below.

 

config vpn ssl web portal
    edit <portal_name_str>
        set limit-user-logins {enable | disable}
end

 

Additionally, the 'Auth-concurrent' setting only applies to users of firewall authentication or captive portal authentication.

 

In v7.6.3 and later, SSL VPN tunnel mode is deprecated and no longer supported for all FortiGate models. For models with SSL VPN web mode available, it is renamed to 'Agentless VPN'.

 

Related document:

SSL VPN tunnel mode replaced with IPsec VPN