Hot!VPN for Windows Clients with local Internet browsing

Author
DamianLozano
New Member
  • Total Posts : 6
  • Scores: 0
  • Reward points: 0
  • Joined: 2019/01/28 11:28:32
  • Status: offline
2019/04/09 08:12:41 (permalink)
0

VPN for Windows Clients with local Internet browsing

Hello everyone!
 
I hope anyone can help me with this:
I have a L2TP+IPSec VPN (Dialup) configured in a Forti and Windows Clients are connecting fine.
I want to these Windows client can use Internet through theirs local default gateways, I dont want to clients navigate through the remote Fortinet.
Is it posible to create a VPN which I can use to connect from Windows OS to remote network through Forti but leaving the same local gateways?
 
Thanks in advance.
Regards,
 
#1

6 Replies Related Threads

    SecurityPlus
    Gold Member
    • Total Posts : 260
    • Scores: 4
    • Reward points: 0
    • Joined: 2014/08/11 18:41:34
    • Status: offline
    Re: VPN for Windows Clients with local Internet browsing 2019/04/10 02:23:29 (permalink)
    0
    Have you considered Split Tunneling?.

    Here is an article about the technology:
    https://kb.fortinet.com/k....do?externalId=FD36253

    FWF30E, FG50E, FWF50E, FG60D, FWF60D, FG60E, FG80E, FG100D
    FortiOS 5.2, 5.4, 5.6, and 6.0
    FAP-221E, FAP-221C
    #2
    DamianLozano
    New Member
    • Total Posts : 6
    • Scores: 0
    • Reward points: 0
    • Joined: 2019/01/28 11:28:32
    • Status: offline
    Re: VPN for Windows Clients with local Internet browsing 2019/04/10 07:50:31 (permalink)
    0
    Thanks a lot,
    It seems it is what I need
    Need some time to configure it
    Regards
    #3
    DamianLozano
    New Member
    • Total Posts : 6
    • Scores: 0
    • Reward points: 0
    • Joined: 2019/01/28 11:28:32
    • Status: offline
    Re: VPN for Windows Clients with local Internet browsing 2019/04/25 04:51:20 (permalink)
    0

    Hello,
     
    I used this link to set up a new vpn
    The VPN was created but when I see the the VPN properties, in the network section, there is a field named "Accessible Networks", which is in the "Split tunnel" part, this field does not show anything, just a Little circle like searching for something.
    I upload a screenshot to Google photos but it seems it is not supported for this.
    I used the cli to remove the "Accessible Networks" but when I try to add a network, nothing appear, it only allow me to add a new network/ip range, I tried to créate a new address object but neither appears as selected.
     
    Any Idea?
     
    Thanks in advance
    Regards!
    #4
    sw2090
    Gold Member
    • Total Posts : 312
    • Scores: 20
    • Reward points: 0
    • Joined: 2017/06/14 01:27:25
    • Location: Regensburg
    • Status: offline
    Re: VPN for Windows Clients with local Internet browsing 2019/04/25 07:11:33 (permalink)
    0
    yes if you enable split-tunneling you can enter into accessible networks either the network you want or even a group of networks using address objects. Then upon connecting the VPN with FortiClient (or what ever you use) you get a network route for every of these networks. Your default route will not be touched. So you will have internet as you have without vpn and be able to reach remote networks.
     
    Without split tunneling the vpn will change your default route to the remote FGT upon connecting to enable you to get further.
     
    #5
    sw2090
    Gold Member
    • Total Posts : 312
    • Scores: 20
    • Reward points: 0
    • Joined: 2017/06/14 01:27:25
    • Location: Regensburg
    • Status: offline
    Re: VPN for Windows Clients with local Internet browsing 2019/04/25 07:13:26 (permalink)
    0
    Did you use the wizzard? Then you might have to convert your vpn to a normal tunnel to have al options available.
     
    #6
    DamianLozano
    New Member
    • Total Posts : 6
    • Scores: 0
    • Reward points: 0
    • Joined: 2019/01/28 11:28:32
    • Status: offline
    Re: VPN for Windows Clients with local Internet browsing 2019/05/21 12:52:33 (permalink)
    0
    Hello
    I tried to change the VPN to custom, but still the same
    In "Accessible networks" appears a circle with dots spinning
     
    Regards
    #7
    Jump to:
    © 2019 APG vNext Commercial Version 5.5