Hi All
I have manged to setup a windows native VPN connection to my FortiGate and also gain internet access via the VPN which is all great. However I was hoping by unticking "use default gateway on remote network" on the windows VPN interface it would then allow me to browse the internet and access local resources on the LAN I am connecting from. Unfortunately this does give me local internet and resource access back but I lose connection to the remote LAN behind the FortiGate VPN. Is it possible to have access to both via the windows VPN client?
I hope that makes sense and many thanks for your help
Kind Regards
Speedy
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi @speedy96 https://community.fortinet.com/t5/FortiGate/Technical-Tip-Split-tunneling-on-L2TP-IPSEC-VPN-between/... Please have a look on this KB.
This indeed worked in my lab
In the VPN itself, there is no split tunnel option for L2TP. However, it is achievable by making certain changes to the DHCP parameters (indirect way to configure split tunnel)
Hi KS,
I have followed the article but I am stuck when assigning the dhcp server. It will not let me use zero's as specified in the article. see screenshot, any ideas?
Hi KS,
I think I am nearly there on this. Although the routes don't seem to be coming through from the l2t.root interface. I'm pretty sure I have everything right, I even matched the configuration in the KB article and just added the routes for my internal LAN in the hexadecimal values. Any ideas where I may be going wrong?
Just to add if I manually add the routes from windows it works fine....
KS,
I just wanted to say thanks so much for your help, I now have this working. It turns out I had calculated the Hex Values wrong. I googled for a different IP - Hex tool and it gave me the correct values and then the routes added perfectly and the split tunnel works like a charm. Thanks for all you help. Problem sorted :)
Speedy
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.