This configuration can also be used for tunel mode. FGT01 (full-access)
# show config vpn ssl web portal edit "full-access" set tunnel-mode
enable set web-mode enable set limit-user-logins enable set ip-pools
"SSLVPN_TUNNEL_ADDR1" set split-tunneling...
In this version, the FortiGate uses PAP (by default) for authentication
tests from GUI.If the server is configured with MS-CHAP-v2, then the
tests must be performed through the CLI. FGT_01# diagnose test
authserver radius NPS mschap2 username passwor...