[Step by Step] Configuring SSL VPN in Fortinet 5.2.4 and higher

SSL VPN IN FORTINET 5.2.4 or higher

Watching is more Fun than reading... Click the link above!!










                                 
                                                      










To configure SSL VPN in Any fortinet firewalls having OS 5.2.4 or higher follow this procedure (it might work for lower versions also, i didn't tested :) )

Note: In Fortinet, by default we get SSL_VPN_TUNNEL_ADD for SSL VPN Users., In this tutorial i have configured the remote users subnet as SSL_USERS_Subnet so wherever i have used this group you use your SSL subnet group.

1. Go to User & Device:
add a new local user.
2. Go to user groups and a new group for SSL users and add the users created in step 1 in this group.

3.Go to Policy & Objects:
create a new object for your internal network (e.g.., 192.168.2.0/24)

4.Go to VPN > SSL > Portals

edit the Full-access tunnel: Configure it as per below.



5. Go to settings under SSL:
    configure these settings
    listen on interface "want interface"
    listen on port: any custom port  "8443" or "10443"

6. G0 to Athentication/Portal mapping:
    a.create new one...
    b.select your ssl user group
    c.Select portal as full access!!




7. Go to router --> static routing:
    a.create new
    b.configure a static route towards your SSL VPN SUBNET with interface as ssl.root

8. Go to Policy & Objects:
    we need to created 3 policies...

   a.WAN to ssl.root
   b.ssl.root to WAN
   c.ssl.root to LAN

A.WAN to SSL.ROOT POLICY:



CLICK OK after configuring as above.

B. SSL.ROOT to WAN POLICY:



CLICK OK after configuring as above.

C. SSL.ROOT to LAN POLICY:




CLICK OK after configuring as above.

Configuration of Fortinet SSL VPN was done, now you should install client in your PC and login.




Thank you.. for watching!!!  :)

Popular posts from this blog

Converting cisco 1852 AP to controller (Mobility express)

Cisco Access Point Cap to Sap / Sap to Cap conversion

HP Switch Comware firmware Upgradation