Hi,
As a replacement for SSL VPN for remote users, we have implemented IP SEC dialup.
Users connect with forticlient. Everything works fine.
However, I would like to be able to force the disconnection of sessions after a set time (i.e. 12 hours), even if traffic is generated.
I have not been able to test any functional solutions.
Do you have any idea how to do this?
Solved! Go to Solution.
hi,
maybe this article could help, https://community.fortinet.com/t5/FortiGate/Technical-Tip-Hard-timeout-for-Dialup-IPSEC-VPN-Tunnel/t...
hi,
maybe this article could help, https://community.fortinet.com/t5/FortiGate/Technical-Tip-Hard-timeout-for-Dialup-IPSEC-VPN-Tunnel/t...
Thanks @funkylicious,
That works for me.
With the reauth enable, Forticlient disconnects when the key lifetime expires.
Just disable the tunnel interface on the network interfaces tab and the tunnel won't be to form the tunnel. This would work depending on your configuration and who you want to block out temporarily.
User | Count |
---|---|
2087 | |
1181 | |
770 | |
451 | |
344 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.