Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
sebastien
New Contributor

Informations about VPN SSL Tunneling

Hello,

 

I tried to create a VPN with SSL-Tunneling and I have several questions. Is there a need to open ports on an isp in VPN-SSL?

the configuration as in this documentation is in 10443 for the vpn and then 443 in setting for access to the fortinet management interface.

 

https://docs.fortinet.com...tunnel-for-remote-user

But even if I register on forticlient "myIPpublic: 10443" I cannot access the establishment of the connection, in fact it finds nothing. Thank you.

 

4 REPLIES 4
ede_pfau
SuperUser
SuperUser

Then exchange both ports, they can be chosen randomly:

change admin port to 37443, SSLVPN to 443

 

Incoming tcp/443 should be allowed with all ISPs, high ports (> 1023) not necessarily.


Ede

"Kernel panic: Aiee, killing interrupt handler!"
Ede"Kernel panic: Aiee, killing interrupt handler!"
sebastien

Thank you very much

 

i have another questions, but i will make video, because i can go on the website SSL-VPN, but i don't have autorization when i want to connect with my login-password, and i don't know why.

 

i opened 443 on my isp and i can go to MY_IP_PUBLIC:443 

 

Thx very much!

ede_pfau

What is your SSLVPN setup? (post in text mode)

In the policy from WAN to SSL.root, do you've got a user group for authentication?


Ede

"Kernel panic: Aiee, killing interrupt handler!"
Ede"Kernel panic: Aiee, killing interrupt handler!"
sebastien

Ok, it's work with SSL-WEB super !!!! :)

but i have a problem with forticlient .

maybe firewall rules. i have actived VPN tunneling.

 

http://image.noelshack.com/fichiers/2020/25/3/1592394327-vpnsslfortinet.png

 

Thx very much.

Labels
Top Kudoed Authors