Hello,
I configured as the manual an IPsec Tunnel to be able to connect the remote clients to the LAN. I was thinking then to restrict the firewall rules (users can access to servers, others users no). But that seems to not working when I put a user group in source of the firewall rule. Is there a way to restrict the access of the LAN for some users o it will have access of all the infrastructure ?
In SSL it's possible to do it easily but don´t find a way in IPsec..
Many thanks
Solved! Go to Solution.
Hey,
you can get acquainted with the article below about differences of IPSec and SSL-VPN.
Also, haven't you looked to the guide below?
Hello,
I configured both VPN in my FORTIGATE, I know that I can manage permissions with SSL, and was wondering if It was possible or not with IPsec (The IPsec is faster than SSL, that's why my question).
The article is just to know how to configure a SSL VPN and I already did it, are you guessing that with IPsec the permissions are not possible?
Hi,
Thank you for your query, please be notified that in plain site to site vpn it is not possible to restrict the access based on user name or user group. However you can configure the dialup ipsec vpn or ssl vpn to achiev this.
Regards,
Pratik
Hi @D-hg
Thanks for posting your query
You can restrict the access to the network by configuring the IPSEC dial up VPN
Kindly refer the below documents and check if it can help the requirement
Hello, When I try to put this conf I cannot connect with anyone.
Many thanks for your help
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1737 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.