Hello,
is there a chance to add a Host-Check for Win-Server to block them for VPN Connection?
Many thanks
TBC
Solved! Go to Solution.
Hi @TBC
Please issue the following command and retry to connect with Linux host once again:
config vpn ssl web portal
edit "portal name"
set skip-check-for-unsupported-os disable
end
This is to configure FortiGate in a way that OS check is mandatory, and do not skip OS version that FortiGate is unable to identify:
Hi there:
Can you please try the following? Is this what you are looking for?
Thank you,
Hope.
Hi @TBC
If you are connecting to SSLVPN on FortiGate, you can restrict the specific OS version to connect. You may refer to the following guide:
Once you turn on the feature of OS check, technically all windows server would not be able to connect. That is because the Windows Server OS version do not match those in the list.
Thank you both so much! Both info have helped me further!
What surprises me a little is that when HostCheck is active, Linux systems can use the VPN client.
Is there also a corresponding possibility for Linux?
Many thanks
TBC
Hi @TBC
Please issue the following command and retry to connect with Linux host once again:
config vpn ssl web portal
edit "portal name"
set skip-check-for-unsupported-os disable
end
This is to configure FortiGate in a way that OS check is mandatory, and do not skip OS version that FortiGate is unable to identify:
Hello Cheng,
perfect, that's exactly that what I looking for!!
Many many thanks!
Cheers TBC
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1740 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.