Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
rezafathi
Contributor II

Native l2tp ipsec remote access vpn

Hi

We have some remote users with windows 7 and forticlient vpn app does not install on windows 7. I created a native l2tp vpn tunnel, it created 2 firewall policies automatically. I also want to have split tunneling enabled. When they connect via this tunnel, they can not connect to our internal network nor internet. What should i do to have access to internal networks and internet at the same time? Thanks.

Reza F.
Reza F.
1 Solution
ozkanaltas
Valued Contributor III

Hello @rezafathi ,

 

You can review this document. This way should work.

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Split-tunneling-on-L2TP-IPSEC-VPN-between/...

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW

View solution in original post

If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
3 REPLIES 3
ozkanaltas
Valued Contributor III

Hello @rezafathi ,

 

You can review this document. This way should work.

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Split-tunneling-on-L2TP-IPSEC-VPN-between/...

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW
If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
hbac
Staff
Staff

Hi @rezafathi

 

When connected to the VPN, you need to check your routing-table 'route print'. Also make sure you have firewall policy to allow the traffic to internal network. If you have proper routes, you can run debug flow on FortiGate to see if traffic is being dropped. https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-First-steps-to-troubleshoot-connecti...

 

Regards, 

rezafathi

Thanks. On windows i can not select mschapv2. Only pap works. Why?

Reza F.
Reza F.
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors