Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
UserY
New Contributor

Fortigate SSL VPN or IPSec VPN

Hello everybody,

 

we currently have SSL VPN in use. The users in the home office keep getting disconnections in the Forticlient, so they have to log in again and again. Are there any solutions to make the VPN connection more stable so that there are hardly any VPN disconnects during the day? How is your VPN Configuration at your company?

 

Background: We want configure 2FA (2-factor-authentication) on our VPN. So we need a stable connection. That the User don't need to authenticate after every disconnect from the VPN

 

Glad about any feedback & thank you

4 REPLIES 4
srajeswaran
Staff
Staff

Can you check if the idle-time is set to 300 sec(default value), if so, the tunnel will get disconnected if the user don't use suystem for 5 minutes.

Try configuring a higher idle time and monitor.

https://community.fortinet.com/t5/FortiGate/Technical-Tip-SSL-VPN-timers-explanation-and-SSL-VPN-Log...

Regards,

Suraj

- Have you found a solution? Then give your helper a "Kudos" and mark the solution.

UserY

Hello @srajeswaran thanks for your reply. The Idle Logout Time for Inactive is 600 seconds.

srajeswaran

which is 10 minutes, I think the VPN will go down if the user is away for a break. Can you increase it to atleast an hour and check?

Regards,

Suraj

- Have you found a solution? Then give your helper a "Kudos" and mark the solution.

funkylicious
Contributor III

geek
Labels
Top Kudoed Authors