SSL VPN

Groupbased SSL VPN bookmarks (292125)

This CLI-only feature allows administrators to add bookmarks for groups of users. SSL VPN will only output the matched group-name entry to the client.

Syntax:

config vpn ssl web portal edit “portal-name”

set user-group-bookmark enable*/disable next

end

config vpn ssl web user-group-bookmark edit “group-name”

config bookmark edit “bookmark1”

…. next

end next

end

DTLS support (227138)

The Datagram Transport Layer Security (DTLS) protocol is supported for SSL VPN connections. DTLS support can be enabled in the CLI as described below.

Syntax

config vpn ssl settings

set dtls-tunnel [enable | disable] (default: enabled)

end

3 thoughts on “SSL VPN

  1. John Petersen

    In 5.4.1 is there any way to disable display of the “download forticlient” button? as there was in 5.2… They’ve removed the CLI option and there appears to be no GUI option either. As this is an end user interface, and users will be users, they get confused about the purpose of the button. Thanks!

    Reply
    1. Mike Post author

      The documentation definitely states that they removed it. I have not been able to tie down a way to remove it in 5.4.1 unfortunately. Fortinet hasn’t had an answer for me either.

      Reply

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.