Step 5: Configure SSL-VPN Tunnel Settings
To configure the SSL-VPN tunnel settings:
- Select VPN > SSL-VPN Settings to configure the SSL-VPN settings.
- Set the "Listen on Interface" to your Internet-facing interface, which is
Port1
in this example. - To avoid port conflict, set the Listen on Port to
44310
. - Set "Restrict Access" to
Allow access from any host.
- For "Server Certificate", select a desired certificate. (Note:
Fortinet_Factory
is the default certificate. We recommend that you purchase and use a certificate of your own.) - Under "Tunnel Mode Client Settings", set the IP range to the one you've selected earlier, i.e.,
SSLVPN_TUNNEL_ADDR1
. - Under Authentication/Portal Mapping, select Create New to create a new rule:
- Set Users/Groups to
sslvpngrp
- Set Portal to
full-access
- Click OK.
- Click Apply.
|
If necessary, map up the SSL-VPN portal for All Other Users/Groups and save your changes. |