- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Native Windows VPN and local Lan access
Hi All
I have manged to setup a windows native VPN connection to my FortiGate and also gain internet access via the VPN which is all great. However I was hoping by unticking "use default gateway on remote network" on the windows VPN interface it would then allow me to browse the internet and access local resources on the LAN I am connecting from. Unfortunately this does give me local internet and resource access back but I lose connection to the remote LAN behind the FortiGate VPN. Is it possible to have access to both via the windows VPN client?
I hope that makes sense and many thanks for your help
Kind Regards
Speedy
Solved! Go to Solution.
- Labels:
-
FortiGate
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi @speedy96 https://community.fortinet.com/t5/FortiGate/Technical-Tip-Split-tunneling-on-L2TP-IPSEC-VPN-between/... Please have a look on this KB.
This indeed worked in my lab
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
In the VPN itself, there is no split tunnel option for L2TP. However, it is achievable by making certain changes to the DHCP parameters (indirect way to configure split tunnel)
- « Previous
-
- 1
- 2
- Next »
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi KS,
I have followed the article but I am stuck when assigning the dhcp server. It will not let me use zero's as specified in the article. see screenshot, any ideas?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi KS,
I think I am nearly there on this. Although the routes don't seem to be coming through from the l2t.root interface. I'm pretty sure I have everything right, I even matched the configuration in the KB article and just added the routes for my internal LAN in the hexadecimal values. Any ideas where I may be going wrong?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Just to add if I manually add the routes from windows it works fine....
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
KS,
I just wanted to say thanks so much for your help, I now have this working. It turns out I had calculated the Hex Values wrong. I googled for a different IP - Hex tool and it gave me the correct values and then the routes added perfectly and the split tunnel works like a charm. Thanks for all you help. Problem sorted :)
Speedy

- « Previous
-
- 1
- 2
- Next »