Hello, thanks for your help.
I have a previous post with the same subject but I think it is better to dont revive the old post.
I have Fortigate 60D with an old firmware: 5.2.0
Someone give me the following link, this worked for me but with FortiClient:
https://kb.fortinet.com/kb/viewContent.do?externalId=FD36253
I would like to know if there is another tutorial to create a VPN for Windows client instead of FortiClient, I didnt found anything like this on Internet
Thanks in advance.
Regards,
Damián
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
I have never tried this but what about following the ipsec vpn for windows steps? Creating an IPsec VPN from network & internet settings of windows might work.
Orestis Nikolaidis
Network Engineer/IT Administrator
Orani, thanks for your response.
Every time I created an IPSec VPN in fortigate, the clients allways navigate trough the remote fortigate (with the proper filter rules).
I think I tried just enabling "Split tunnel" but it never worked
If someone has a tutorial would be nice.
I just noticed the following:
- I have no IPSec template without forticlient
- If I select "Custom VPN Tunnel (No Template)", after 2 seconds, the fortigate logout itself
The "Dialup - Android (Native L2TP/IPsec)" will also work for Windows clients?
Thanks, regards,
Damián
the FortiGate has to do Split Tunneling not the client.
Without split tunneling ALL traffic will navigate through the fortigate since the client (no matter if forticlient or other) will change your default route.
With split tunneling enabled and set to a group of networks on the fortigate the client will set a network route for every of those networks and leave the default route untouched.
So internet traffic will navigate the usual way and only traffic to those networks will navigate through the fortigate.
This is not a client isse.
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
Thanks SW2090,
I know that it depends on the fortigate, sorry if I didnt explain this
I just want to know how to configure the fortigate to accomplish this with a IPSec VPN
Which kind of VPN should I create? Should I use a template? Which template?
Thanks
Regards
Damián
I cannot tell you. We use ipsec with forticlient but also some OSX Client on Mac. On our FGT it is just set up as standard ipsec tunnel with split tunneling enabled.
The profile might depend on the vpn client you use...
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
Alas I set it up as dial up tunnel with the wizzard most times but it has afterwards to be converted to a custom ipsec tunnel to be able to enable and configure split tunneling.
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
SW2090, thanks for your response.
Sorry, when I create a VPN the following options appears:
- Dialup - FortiClient (Windows, Mac OS, Android) - Site to Site - FortiGate - Dialup - iOS (Native) - Dialup - Android (Native L2TP/IPsec) - Dialup - Cisco Firewall - Site to Site - Cisco - Custom VPN Tunnel (No Template) Which one should I use? The last option (Custom VPN Tunnel) is not working because when I select it and click "next", after about 3 seconds the fortigate automatically log out Do you know why? Should I use cli instead? I think I would need a guide to create it trough cli. Thanks in advance. Regards DamiánI use Dialup - Forticlient as profile.
You have to convert it to a custom vpn tunnel afterwards because you won't see split tunneling if you don't.
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
Thanks,
Converting the VPN to custom will allow me to connect from Windows client without FortiClient?
This is what I wanted from the begining
Regards,
Damián
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1662 | |
1077 | |
752 | |
443 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.