Hello, was curious if there's an easy way to set an idle timeout on user-initiated client to site IPSec VPN connections? Currently they seem to be able to just set there due to dead peer detection and/or keepalives, but aren't actually performing any valid work. I like having DPD to keep the session up if it's being used intermittently, but would prefer to drop it if the user hasn't done anything in perhaps 20 minutes.
How about this idle-timer config described in this page?
User | Count |
---|---|
2035 | |
1164 | |
770 | |
448 | |
327 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.