Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Not applicable

Logging onto a domain via Forticlient

Hi all, I have a Fortigate 100 with Forticlient (latest version). I have setup a fairly basic client to site VPN and once a user is logged onto their machine locally, they can then fire up the Forticlient and create a successful tunnel. HOWEVER, knowing on a Windows machine before logging on, Fortinet have created a little VPN button to connect the VPN before logging on, why is the user not then able to logon to the domain - thought that was what it was for? Does anyone have any experience on whether this is possible and how it is achieved? Many thanks, Richard
7 REPLIES 7
vanc
New Contributor II

The " Startup Tunnel before Windows Logon" feature is for users on the go. If they use a dialup or whatever internet connections outside their corporate network, they can use this feature to establish a tunnel to their corporate gateway first, then log on to domains.
Not applicable

Thanks for that, however I' m already aware of the button - it' s the fact that it doesn' t logon to the domain after clicking that button which is my issue. No login scripts are run and the client loads a local profile. If you know what I need to do so that the client does logon properly, it would be much appreciated. I' ve got an any any internal->external encrpyt rule running as specified in some Fortinet documentation, not sure what else to do! Cheers, Rich
vanc
New Contributor II

I think you may need to choose " Acquire Virtual IP" to get it work. You can use manual IP. DHCP over IPSec is difficult to configure on server side.
Not applicable

It seems we' ve now got it to work by including a DNS suffix and adding an LMHOSTS entry for the server.... Thanks for the help. Regards, Richard
Not applicable

Richard, Where did you include a DNS suffix? thanks in advance, Eric
Not applicable

Off the advanced tab on TCP/IP settings.....
Not applicable

Ok, Sure, I thought you had discovered a setting in the FortiClient for this. Regards, Eric
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors