Created on ‎02-03-2011 03:08 AM
FCNSA, FCNSP
---
FortiGate 200A/B, 224B, 110C, 100A/D, 80C/CM/Voice, 60B/C/CX/D, 50B, 40C, 30B
FortiAnalyzer 100B, 100C
FortiMail 100,100C
FortiManager VM
FortiAuthenticator VM
FortiToken
FortiAP 220B/221B, 11C
config user setting set auth-timeout <minutes_int> endor in the GUI: User>User>Authentication: Authentication Timeout (1-480 min) For SSL VPN, there are 2 timeouts: - the idle timeout which disconnects the user if there is no traffic - the auth-timeout which prompts the user to re-authenticate anyway, idle or not. Both can be set in the CLI:
config vpn ssl settings set idle-timeout <seconds_int> set auth-timeout <seconds_int> endor in the GUI: VPN>SSL>Config: Idle Timeout (1-28800 sec).
Created on ‎02-03-2011 08:16 AM
Created on ‎02-03-2011 08:21 AM
Created on ‎02-04-2011 04:28 AM
Created on ‎02-07-2011 12:31 AM
Fortigate Newbie
Authentication happens at various places in FortiOS. As you can authenticate via HTTP (browser) but also via telnet or ftp, there is no general " logout" feature. Instead, disconnection is done via timeouts.Sorry for quoting myself. This is the answer to your question, and the reason for it. It is true that during SSL VPN a second browser window is opened. In this window a small script is executing which keeps the auth timeout from expiring. If you close that window the auth timeout will expire and the user will be forced to re-authenticate. This is not what you were looking for but as it was mentioned I thought to clarify this. What you could do is set the auth timeout quite short - but this will annoy users that are on longer sessions. There is no " session tear-down" when an authenticated user quits as the firewall will never know he quit - there is no feedback from the user.
User | Count |
---|---|
2539 | |
1352 | |
795 | |
642 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.