Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
itelysium
New Contributor

SSL-VPN Sysadmin Access (Fortigate 100F)

Dear Forum Community ,

 

I want to access remote in my working company and have acess in all vlans . The infastructure of my fortigate is the bellow :

Interface WAN: For Access in ISP 

Interface Trunk with subinterface: Vlan1,Vlan2, Vlan3 etc 

 

I do all the settings with ssl-vpn address and i want to have one firewall policy to access and administrate all VLANs. 

2 REPLIES 2
AEK
SuperUser
SuperUser

Hello

Add a firewall rule like this:

  • Src intf: SSL-VPN Tunnel Interface
  • Src: SSL_VPN_address_range + SSL_VPN_user_or_group
  • Dst intf: VLAN1, VLAN2, VLAN3
  • Dst: all
AEK
AEK
funkylicious
SuperUser
SuperUser

Hi,
Exactly how @AEK  described it, just keep in mind that you would need to activate this feature in order to have multiple interfaces in one policy which is not enabled by default.

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-allow-the-configuration-of-policies...

"jack of all trades, master of none"
"jack of all trades, master of none"
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors