Good day, I am planning to move away from using an Address Range to
allocate DHCP addresses to my SSL VPN full tunnel clients to using a
Windows 2016 DHCP server, I have a FortiGate FGT200F running firmware
7.x.The current Windows DHCP server is alre...
I have a FortiGate FGT200F device running firmware 7.* and want to swap
from using the internal allocation of VPN IPs via Address List to an
internal Windows DHCP server. What I am having issues understanding is
if I set up the DHCP helper/relay on t...
Hi, I am trying to debug the SSL VPN using the commands below but they
only last 30 minutes, is there a way of making debug last longer or turn
on at a certain point? diagnose debug application sslvpn -1
Good day, I am trying to create a firewall policy on my FortiGate 7.*
from the SSL-VPN interface to the LAN interface to block certain
counties, I have set an Address group with the GEO locations but the
source keeps saying "One User or Group is requ...
In the past week I have been having issues with VPN users getting access
denied when trying to connect to the VPN via FortiClient, if they try
enough times it will finally connect. the DUO Authentication Proxy is
locally running on Windows 2016 and i...
Hi, Thanks but what I am trying to do is block users from certain
counties from being able to try and connect to the VPN, I am getting a
lot of random attempts to connect to the VPN and want to block counties
were users are not located to make more s...
Thanks for the information, the VPN uses the Radius server to do
2-factor with DUO when users connect, what I have found is that I need
to add the Radius server for the VPN out Firewall Policy as well or
users can't connect to the VPN and by added th...
Could this be the issue as the first two sources in the Firewall Policy
as Groups so doing an "OR" and not "AND" Between identical elements,
it's a logical OR (e.g. this address or this address).Between different
elements, it's a logical AND (this ad...