Fortinet white logo
Fortinet white logo

Administration Guide

Starting an SSL-VPN tunnel CC test

Starting an SSL-VPN tunnel CC test

FortiTester tests the DUT's ability to support concurrent SSL VPN tunnel connections by establishing a large number of concurrent SSL VPN tunnel connections and completing a full round of HTTP transactions through each tunnel.

To start an SSL VPN tunnel CC test:
  1. Go to Cases > Performance Testing > SSL-VPN>CC to display the test case summary page.
  2. Click + Create New to display the Select case options dialog box.
  3. In the popup dialog, for the Network Config option, select the network template you have created in Cases > Security Testing > Objects > Networks. Then the network related options will automatically be filled. See Using network configuration templates for how to create a network template.
  4. Select a Certificate Group if applicable.
  5. Click OK to continue.
  6. Configure the test case options described below.
  7. Click Start to run the test case.

FortiTester saves the configuration automatically so you can run the test again later. You can also click Save to save the test case without running it.

Tip 1: You can also copy an existing case, and change its settings to create a new case. In the case list, click Clone to clone the configuration. Only the case name is different from the original case.

Tip 2: You can add or edit a comment when the test is running. This comment can be used to search for the test result in the Results page. This is useful especially when the test runs for a long time.

SSL-VPN Test Case configuration generic information

SSL-VPN Test Case configuration specific to CC

Settings Guidelines
Basic Information

VPN Host Group

Specify VPN hosts defined under Objects > Host Group. A Host Group is comprised of Hosts e.g. abc.com = 1.1.1.1 . FortiTester will inject the hosts configured into SNI field (server name indication) within the TLS handshake.

Load
Tunnel Concurrent Connection Specify the number of concurrent connections.
VPN Gateway Port Specify the VPN gateway port number.
VPN Username Enter the VPN username.
VPN Password Enter the VPN password.
Certificate The server certificate. If you have selected a certificate group in the Select case options window, then you are not allowed select certificate here.
Think Time The delay between client HTTP requests (unit: second).
Client Network
Tunnel Mode Select TCP or UDP.

Starting an SSL-VPN tunnel CC test

Starting an SSL-VPN tunnel CC test

FortiTester tests the DUT's ability to support concurrent SSL VPN tunnel connections by establishing a large number of concurrent SSL VPN tunnel connections and completing a full round of HTTP transactions through each tunnel.

To start an SSL VPN tunnel CC test:
  1. Go to Cases > Performance Testing > SSL-VPN>CC to display the test case summary page.
  2. Click + Create New to display the Select case options dialog box.
  3. In the popup dialog, for the Network Config option, select the network template you have created in Cases > Security Testing > Objects > Networks. Then the network related options will automatically be filled. See Using network configuration templates for how to create a network template.
  4. Select a Certificate Group if applicable.
  5. Click OK to continue.
  6. Configure the test case options described below.
  7. Click Start to run the test case.

FortiTester saves the configuration automatically so you can run the test again later. You can also click Save to save the test case without running it.

Tip 1: You can also copy an existing case, and change its settings to create a new case. In the case list, click Clone to clone the configuration. Only the case name is different from the original case.

Tip 2: You can add or edit a comment when the test is running. This comment can be used to search for the test result in the Results page. This is useful especially when the test runs for a long time.

SSL-VPN Test Case configuration generic information

SSL-VPN Test Case configuration specific to CC

Settings Guidelines
Basic Information

VPN Host Group

Specify VPN hosts defined under Objects > Host Group. A Host Group is comprised of Hosts e.g. abc.com = 1.1.1.1 . FortiTester will inject the hosts configured into SNI field (server name indication) within the TLS handshake.

Load
Tunnel Concurrent Connection Specify the number of concurrent connections.
VPN Gateway Port Specify the VPN gateway port number.
VPN Username Enter the VPN username.
VPN Password Enter the VPN password.
Certificate The server certificate. If you have selected a certificate group in the Select case options window, then you are not allowed select certificate here.
Think Time The delay between client HTTP requests (unit: second).
Client Network
Tunnel Mode Select TCP or UDP.