Hello all,
I am trying to run a remote user through an SSL VPN to an IPSEC VPN that goes to a different remote location. For example, A district manager checking on convenience stores from home. Is this possible? I've got the tunnels to the stores and i can get the users dialed in with SSL (or IPSEC)....it's the middle part that is giving me trouble.
I'd need to take a look in detail in order to give you an accurate answer, but...
Let's assume that the IPSEC VPN is working, and you have policies allowing traffic from the SSL VPN interface and user to the convenience stores.
Does this policy has NAT enabled? If not, does the IPSEC tunnel's phase 2 allows traffic from the SSL VPN address range to the convenience stores?
If you're not NATting, you will have to check routing and phase 2 parameters on the "remote" side too.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1740 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.