Fortinet Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
suthomas1
New Contributor

iinternet via proxy

Hello,

 

Our sister concern are deploying fortinet based vpn. It was found that users can connect to the vpn & access local resources.

However, they are unable to access internet via our corporate proxy. 

 

Split tunnel is not enabled & client version is 5.6. 

 

appreciate all inputs.

Suthomas
1 Solution
hubertzw
Contributor III

Do you see any specific error? Do you have firewall policy for Internet connection in place for VPN users?

View solution in original post

7 REPLIES 7
hubertzw
Contributor III

Do you see any specific error? Do you have firewall policy for Internet connection in place for VPN users?

suthomas1

Thanks for the input.

Nothing as error, but mainly users cannot browse internet when connected to vpn.

Split tunnel is disabled., Once connected to vpn, the internet access should pass using our corporate proxy & not directly out. 

 

capture says the client IP does a close connection when trying to connnect to web.

 

 

Suthomas
hubertzw

can you capture the traffic on the client?

suthomas1

i was told, the capture shows the client(vpn pc) closing the connection with Fin,Ack after the initial handshake?

They have also said that once connected, the users default gateway seem to be their ip address + 1,  is that expected?

 

 

Suthomas
hubertzw

What kind of authentication\authorization you do on the proxy server? Are you sure the VPN users are allowed by proxy server?

suthomas1

Yes, the users can communicate to proxy server. i was told the capture shows the vpn client disconnects the proxy session after handshake.

 

 

Suthomas
Zoha47
New Contributor

Waiting for your VPN...