Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
3dBConsult
New Contributor

SSL-VPN only specific certificate

Good morning.

 

We have recently created a certificate to use in the SSL-VPN, we activated the certificate and people with the certificate connected perfectly.

 

But people without the certificate can connect too, we want only people with that specific certificate be able to connect to the VPN.

 

How can we block people without the certificate?

 

Thanks a lot for your help.

3db
3db
2 REPLIES 2
ozkanaltas
Contributor III

Hello @3dBConsult ,

 

You can review this document about certificate authentication on FortiGate SSL VPN.

 

https://docs.fortinet.com/document/fortigate/7.4.3/administration-guide/266506/ssl-vpn-with-certific...

 

 

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW
If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
pminarik
Staff
Staff

The solution depends on how the users are authenticating.
Do you expect them to provide only the certificate, or the certificate + username + password?

[ corrections always welcome ]
Labels
Top Kudoed Authors