Fortinet white logo
Fortinet white logo

Administration Guide

Enhancing IPsec security using EMS SN verification

Enhancing IPsec security using EMS SN verification

This feature ensures that only licensed FortiClient endpoints can establish an IPsec VPN connection with FortiGate. The FortiGate performs EMS SN verification, and for this feature to work, both the FortiGate and FortiClient endpoints must be connected to the same FortiClient EMS.

To enable the EMS SN verification in the CLI:
config vpn ipsec phase1-interface
    edit <name>
        set ems-sn-check {enable | disable}
    next
end

Command

Description

set ems-sn-check Enable or disable EMS serial number verification.

Enhancing IPsec security using EMS SN verification

Enhancing IPsec security using EMS SN verification

This feature ensures that only licensed FortiClient endpoints can establish an IPsec VPN connection with FortiGate. The FortiGate performs EMS SN verification, and for this feature to work, both the FortiGate and FortiClient endpoints must be connected to the same FortiClient EMS.

To enable the EMS SN verification in the CLI:
config vpn ipsec phase1-interface
    edit <name>
        set ems-sn-check {enable | disable}
    next
end

Command

Description

set ems-sn-check Enable or disable EMS serial number verification.