How to configure VPN Client to Site on FortiGate

NC

This article explains how to configure the IPSec VPN Client to site feature on Fortigate device. so that the devices can be accessed and remote local area network safely.

How to configure VPN Client to Site on FortiGate

Configure a user and user group

Go to User & Authentication > User Definition to create a local user vpnuser1.

How to configure VPN Client to Site on FortiGate

Go to User & Authentication > User Groups to create a group vpngroup with the member vpnuser1.

How to configure VPN Client to Site on FortiGate

How to configure VPN Client to Site on FortiGate

Policy & Objects -> Addresses to create address ranges for internal VPN networks.

How to configure VPN Client to Site on FortiGate

Go to VPN > IPsec Wizard and configure the following settings for VPN Setup. For Template Type, select Remote Access. For Remote Device Type, select Client-based > FortiClient. 

How to configure VPN Client to Site on FortiGate

For Incoming Interface, Choose Port WAN of device. In the Pre-shared Key field, enter sample as the key. In User Group: Choose VPN group which was created before. 

How to configure VPN Client to Site on FortiGate

In Local Interface: Choose Port LAN. In Local Address: Choose address range for IPSec LAN which was created before. In Client Address Range: Enter IP for VPN client. 

How to configure VPN Client to Site on FortiGate

Adjust the Client Options as needed, then click Create. You need to see the information on the VPN server to configure on the client side.

How to configure VPN Client to Site on FortiGate

How to configure VPN Client to Site on FortiGate

Go to VPN > IPsec Tunnels and edit the just created tunnel. 

Click Convert To Custom Tunnel. You need to save this information to configure on the client side. 

How to configure VPN Client to Site on FortiGate

How to configure VPN Client to Site on FortiGate

How to configure VPN Client to Site on FortiGate

To configure FortiClient. Download and install FortiClient VPN from Fortinet. Set the VPN to IPsec VPN and the Remote Gateway to the FortiGate IP address. Set the Authentication Method to Pre-Shared Key and enter the key.

How to configure VPN Client to Site on FortiGate

Expand Advanced settings

Adjust the same configuration as the VPN server obtained in the previous step, then click save. Enter the password then select connect. 

How to configure VPN Client to Site on FortiGate

How to configure VPN Client to Site on FortiGate

How to configure VPN Client to Site on FortiGate

Successful connection.

How to configure VPN Client to Site on FortiGate

Now you should be able to connect to any address on the office Network. 

Tags: FortiGate VPN