Created on
03-28-2024
07:22 AM
Edited on
01-15-2026
10:34 PM
By
Jean-Philippe_P
| Description | This article describes a possible cause for losing internet access after the user connects to a dial-up IPsec VPN configured with split tunneling enabled. |
| Scope | FortiGate. |
| Solution |
Solution:
Check the route print on the command line of the machine. If there is a 0.0.0.0/0 route pointing to the VPN, the client will lose internet connectivity.
Additionally, make sure the split tunnel address group under the VPN settings does not have a range. A particular IP or the whole subnet is preferred.
Related articles: Technical Tip: Enable split-tunnel For IPsec VPN Troubleshooting Tip: Full tunnel and Split Tunnel endpoint route comparison |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.