Hi,
I have setup a fortigate in HA mode with a VDOM that is setup to have remote access VPN. Forticlient is installed on a PC and is able to connect over VPN. From this point it can ping the interfaces and ssh to the Fortigate but I am unable to get HTTP access for the GUI access. The VPN terminates on the outside interface and the inside interface should allow access to management.
The interface is enabled for HTTPS, Ping, HTTP, FMG-Access, SSH and SNMP
The Fortigate has a route showing directly connected to the username
The PC has a route within the route print (this is a split tunnel)
NAT is disabled
Edit: Policy is allow any from VPN interface to Inside interface vice versa
Is there something that I have to enable to allow Fortigate HTTP access over dial up VPN?
Thanks
Can you ping the interface IP you're trying to GUI/HTTP into when the VPN is up?
Thanks for your input both. Aibek has resolved this for me by taking the redirect to HTTPS tick out. SSL VPN Port conflicts have occured but I have no SSL VPN configuration so I dare say if I clear that up it should resolve that.
Thank you
Lewis
Yeah, disable the HTTPS redirect and then just use the https://ipofgate:adminport setup to manage it. Better than using http and will limit your attack surface.
Mike Pruett
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1737 | |
1107 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.