FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
jintrah_FTNT
Staff
Staff
Article Id 195618

Description

Terminating a dialup user who is already connected to VPN from VPN access without affecting other users


Solution

1) Disable/delete the required dialup user account, or remove the user account from VPN access group defined in phase1 settings.
2) Delete the phase1 for specific user using peers public IP address in phase1 filter.
 
diag vpn ike filter dst-addr4 <IP address of peer>
diag vpn ike gateway flush
 
Note.
If no IKE filters are specified, it would clear all established IKE.