Follow via:
RSS
Email Alert
Question
0 Votes
+ -

Configure FortiGate to work as a SSL VPN

Hello,
I am trying to configure SSL-VPN on my FortiGate 60.

I think I've done everything correctly according to the "fortigate ssl vpn user guide", but when I try to login with the username in the web-browser, it doesn't log me in and gives an error message - "Error:Unavailable information".
I'm using the built-in certificate "Fortinet_Local" (valid until 2026).

In the log I get this error message:
03-03-2009 11:48:46 Local7.Alert 192.168.0.1 date=2009-03-03,time=11:48:46,devname=Fortigate-60,device_id=FGT-602103244712,log_id=0132099602,type=event,subtype= sslvpn-user,pri=alert,vd=root,user="yoav",rip="192.168.0. 113",action=login,status=failure,reason="unavail_info",msg="User yoav login failed from 192.168.0.113"

Even when I login with wrong password it gives the same error message.

This is what I configured in the Fortigate:
I created a user, and added it to the SSL VPN group.
I gave him access to SSL-VPN tunnel service and to all web applications.

In the VPN section, I enabled the SSL-VPN, chose the "Fortinet_Local" as server certificate. Encryption I set on Low (even though I tried with all), require client certificate not enabled (even though it didn't work also when it was enabled).

In the firewall section, in the Address, I added ip range for internal network and external for the IP that the router is giving to the VPN clients.
In the firewall policy, I added a new one, source is external, destination is internal, action is ssl-vpn and allowed the user group of the SSl-vpn.

Then I installed on the client the certificate "Fortinet_local", opened internet explorer, logged in with the user/pass but it didn't work...


Can anyone help ?

Thanks and have a wonderful day,
Yoav
4th Mar 2009

Answers (2)

0 Votes
+ -
Check the Fortinet Knowledge Base for better guidance
Please refer to this link for more accurate steps on configuring SSL VPN:
http://kc.forticare.com/default.asp?id=3617&SID=&Lang=1
15th Jun 2009
0 Votes
+ -
SSL VPN
Hello,

I found this link on the net, maybe it can help you:
http://www.ipspace.eu/fortinet/how-to-setup-an-ssl-vpn-on-fortigate/
6th Feb

Replies

Note this question was from four years ago.....
robo_dev 8th Feb
Answer the question
Formatting +
BB Codes - Note: HTML is not supported in forums
  • [b] Bold [/b]
  • [i] Italic [/i]
  • [u] Underline [/u]
  • [s] Strikethrough [/s]
  • [q] "Quote" [/q]
  • [ol][*] 1. Ordered List [/ol]
  • [ul][*] · Unordered List [/ul]
  • [pre] Preformat [/pre]
  • [quote] "Blockquote" [/quote]

Join the TechRepublic Community and join the conversation! Signing-up is free and quick, Do it now, we want to hear your opinion.