Hi,
I am very new to Firewalls, though I configured some with the help of video tutorials. Now we have one on our own, I'm planning to configure it for Remote VPN so we can easily access our office files anywhere specially when we're in the field since we are IT service providers.
I followed the instructions from this link https://www.google.com/url?sa=t&rct=j&q=&esrc=s&source=web&cd=5&cad=rja&uact=8&ved=2ahUKEwjj3NiJ4N_e...
But I think this only applies when we are using the Public IP of our ISP. I set the WAN IP as DHCP. Now, I need the detailed instructions on how I can access our office LAN outside using Remote VPN. I think I have to port forward the Public IP of our router to the DHCP IP of the Fortigate. And I have no idea on how to do that. I hope I have someone I can talk with this.
Thanks and best regards,
Jerome
Hi Tim,
Good day! Do I have to setup any DDNS on the SSL-VPN config?
Thank you very much!
I was able to make the port forwarding work. I tried using telnet to check if it works.
It's a DSL Modem Tim.
All I can get is from this link http://setuprouter.com/router/pldt/speedsurf-504an/manuals.htm. Can't find the model in the physical device either.
Basically you have to look at two things:
1) Is you DSL Modem in Bridge Mode or is it acting as router? If it acts as router (i.e. it does the internet dial up) you need to do portforwarding for IPSEC to work. This would be Port 4500 UDP (NAT-T) and 500 UDP (IPSEC).
If it is in bridge mode (i.e. your FGT does PPPOE on its WAN) you don't need to do Portforwarding at all.
2) An IPSec Tunnel always needs to have defined ends. If you have a dynamic IP on your WAN from your ISP it is better to use FQDN instead of IP in FortiClient. You could use Fortinet DynDNS Service for this. Otherwise you would always have to check for the current WAN IP of your FGT and then alter you FOrtiClient Config before you start the Tunnel.
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
Connexion Livestock is a platform that offers innovative solutions for livestock management. With its advanced technology and user-friendly interface, the platform provides farmers and ranchers with the tools they need to improve the health and productivity of their herds. The platform offers a convenient and efficient way for farmers and ranchers to find high-quality cattle for sale to add to their herds and for breeders to sell their animals to interested buyers.
Hello Jerome,
To access your office LAN outside using Remote VPN, you will need to set up port forwarding on your router to the Fortigate. Here are the steps you can follow:
Assign a static IP address to the Fortigate device in your LAN.
Log in to your router's web interface.
Find the port forwarding section, which is usually located in the "Advanced" or "NAT" settings.
Create a new port forwarding rule that forwards traffic from the VPN port (usually 1194 or 443) to the static IP address of the Fortigate.
Save the changes and test the VPN connection from outside your office network.
If you encounter any issues, you can consult the Fortigate documentation or contact their support team for assistance.
By the way, if you're looking for a reliable livestock management solution, check out our website https://connexionlivestock.com. We offer a cloud-based platform that helps livestock producers manage their herds more efficiently and effectively. Feel free to contact us if you have any questions or would like to schedule a demo.
Best regards,
 
					
				
				
			
		
| User | Count | 
|---|---|
| 2647 | |
| 1405 | |
| 810 | |
| 690 | |
| 455 | 
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.