Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
LewisBowerbank
New Contributor

Dial Up Remote Access VPN Management Access

Hi,

I have setup a fortigate in HA mode with a VDOM that is setup to have remote access VPN. Forticlient is installed on a PC and is able to connect over VPN. From this point it can ping the interfaces and ssh to the Fortigate but I am unable to get HTTP access for the GUI access. The VPN terminates on the outside interface and the inside interface should allow access to management.

 

The interface is enabled for HTTPS, Ping, HTTP, FMG-Access, SSH and SNMP

The Fortigate has a route showing directly connected to the username

The PC has a route within the route print (this is a split tunnel)

NAT is disabled 

Edit: Policy is allow any from VPN interface to Inside interface vice versa

 

Is there something that I have to enable to allow Fortigate HTTP access over dial up VPN?

 

Thanks

3 REPLIES 3
Toshi_Esumi
SuperUser
SuperUser

Can you ping the interface IP you're trying to GUI/HTTP into when the VPN is up?

LewisBowerbank
New Contributor

Thanks for your input both. Aibek has resolved this for me by taking the redirect to HTTPS tick out. SSL VPN Port conflicts have occured but I have no SSL VPN configuration so I dare say if I clear that up it should resolve that.

 

Thank you

Lewis

MikePruett

Yeah, disable the HTTPS redirect and then just use the https://ipofgate:adminport setup to manage it. Better than using http and will limit your attack surface.

Mike Pruett Fortinet GURU | Fortinet Training Videos
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors