Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
LPO59
New Contributor

How to disconnect dialup IPSEC VPN session ?

Hi,

As a replacement for SSL VPN for remote users, we have implemented IP SEC dialup.
Users connect with forticlient. Everything works fine.
However, I would like to be able to force the disconnection of sessions after a set time (i.e. 12 hours), even if traffic is generated.

I have not been able to test any functional solutions.
Do you have any idea how to do this?

1 Solution
funkylicious
SuperUser
SuperUser

"jack of all trades, master of none"
3 REPLIES 3
funkylicious
SuperUser
SuperUser

hi,

maybe this article could help, https://community.fortinet.com/t5/FortiGate/Technical-Tip-Hard-timeout-for-Dialup-IPSEC-VPN-Tunnel/t... 

"jack of all trades, master of none"
"jack of all trades, master of none"
LPO59

Thanks @funkylicious,

That works for me.
With the reauth enable, Forticlient disconnects when the key lifetime expires.

kawarko1
New Contributor

Just disable the tunnel interface on the network interfaces tab and the tunnel won't be to form the tunnel. This would work depending on your configuration and who you want to block out temporarily.

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors