Hello Dears,
I need to know if there is any solution for disconnect user or down VPN automatic when user is connected to VPN but don't make any activity it just connect to VPN.
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hello,
******************The below is for SSL VPN***********
Yes, Fortinet FortiGate firewalls provide a feature called "idle timeout" that can automatically disconnect a user or terminate a VPN session if there is no activity detected within a specified period of time. This feature helps ensure that VPN connections are not left open indefinitely when users are not actively using them.
To configure idle timeout for VPN sessions on a FortiGate firewall, you can follow these steps:
Access the FortiGate web interface and navigate to "VPN" > "IPsec" or "SSL-VPN" (depending on the type of VPN you are using).
Select the VPN connection or VPN profile you want to configure idle timeout for.
Look for an option related to idle timeout or session timeout. The exact location and name of this setting may vary depending on your FortiGate firmware version. For example, you may find it under the "Phase 1" or "Phase 2" settings for IPsec VPNs, or in the "Portal Settings" for SSL-VPN.
Enable the idle timeout setting and specify the desired timeout value. This value determines how long the VPN session can remain idle before it is automatically disconnected or terminated.
Save the configuration changes and apply them to the FortiGate.
Once the idle timeout is configured, the FortiGate will monitor VPN sessions for activity. If no activity is detected within the specified timeout period, the firewall will automatically disconnect or terminate the VPN session.
Regards,
Shilpa C P
Hello,
You may consider to disable keepalive and auto-negotiate. Please find the details by following the link below:
Hello,
******************The below is for SSL VPN***********
Yes, Fortinet FortiGate firewalls provide a feature called "idle timeout" that can automatically disconnect a user or terminate a VPN session if there is no activity detected within a specified period of time. This feature helps ensure that VPN connections are not left open indefinitely when users are not actively using them.
To configure idle timeout for VPN sessions on a FortiGate firewall, you can follow these steps:
Access the FortiGate web interface and navigate to "VPN" > "IPsec" or "SSL-VPN" (depending on the type of VPN you are using).
Select the VPN connection or VPN profile you want to configure idle timeout for.
Look for an option related to idle timeout or session timeout. The exact location and name of this setting may vary depending on your FortiGate firmware version. For example, you may find it under the "Phase 1" or "Phase 2" settings for IPsec VPNs, or in the "Portal Settings" for SSL-VPN.
Enable the idle timeout setting and specify the desired timeout value. This value determines how long the VPN session can remain idle before it is automatically disconnected or terminated.
Save the configuration changes and apply them to the FortiGate.
Once the idle timeout is configured, the FortiGate will monitor VPN sessions for activity. If no activity is detected within the specified timeout period, the firewall will automatically disconnect or terminate the VPN session.
Regards,
Shilpa C P
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1105 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.