Hello Community,
I'm setting up SSL VPN on a FortiGate device for the first time and could use some guidance. What are the critical settings I should pay attention to for ensuring both ease of use for clients and robust security? If you have any setup tips or resource recommendations,
please share!
As a start, you can refer to the best practices listed in the Administration guide. Since you are in the design phase you could also consider the ZTNA solution, here is a comparison between this two solutions.
Hi Kyle
SSL VPN is not recommended anymore for security. You should use IPsec VPN or ZTNA instead.
But if you have no choice and you must use SSL VPN, in that case @Yurisk published a superb hardening guide for it. If you follow all the steps then you should have a well secure VPN.
https://community.fortinet.com/t5/Support-Forum/Fortigate-SSL-VPN-Hardening-Guide/m-p/249322
Enjoy!
If your FGT is FG-100x or higher models, SSL VPN is still a legit solution especially when you're hosting multiple customers with multiple VDOMs without needing the EMS server or licenses.
Toshi
User | Count |
---|---|
2626 | |
1400 | |
810 | |
672 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.