VPN
L2TP
FortiGate-3000 Administration Guide
01-28006-0010-20041105
271
5
Select Port Forwarding.
6
Set the External IP Address to 0.0.0.0.
The 0.0.0.0 External IP Address matches any IP address. Alternatively, if PPTP users
always connect to the same IP address, you can specify that IP address.
7
Set the External Service Port to 1723.
8
Set the Map to IP address to 192.168.23.1.
9
Set Map to Port to 1723.
10
Set Protocol to TCP.
11
Select OK.
To configure the firewall policy
1
Go to
Firewall > Policy
.
2
Select Create New.
3
For Interface/Zone:
• Set Source to external
• Set Destination to internal
4
For Address name:
• Set Source to All
• Set Destination to PPTP_pass
5
Set Schedule as required.
6
Set Service to ANY.
7
Set action to ACCEPT.
8
Select NAT.
9
Select OK.
L2TP
You can set up VPN connections between FortiGate units and remote Windows
clients using Layer 2 Tunneling Protocol (L2TP). L2TP lets you create a secure
connection between a client computer running Microsoft Windows and your internal
network behind a FortiGate unit.
L2TP combines the features of two other tunneling protocols: PPTP from Microsoft
and L2F from Cisco Systems. L2TP is supported by most recent versions of Windows.
Some implementations of L2TP support elements of IPSec. These elements must be
disabled when L2TP is used with FortiGate units.
Note:
L2TP VPNs are only supported in NAT/Route mode.
Summary of Contents for FortiGate 3000
Page 18: ...Contents 18 01 28006 0010 20041105 Fortinet Inc ...
Page 52: ...52 01 28006 0010 20041105 Fortinet Inc Changing the FortiGate firmware System status ...
Page 78: ...78 01 28006 0010 20041105 Fortinet Inc FortiGate IPv6 support System network ...
Page 86: ...86 01 28006 0010 20041105 Fortinet Inc Dynamic IP System DHCP ...
Page 116: ...116 01 28006 0010 20041105 Fortinet Inc FortiManager System config ...
Page 122: ...122 01 28006 0010 20041105 Fortinet Inc Access profiles System administration ...
Page 252: ...252 01 28006 0010 20041105 Fortinet Inc CLI configuration Users and authentication ...
Page 390: ...390 01 28006 0010 20041105 Fortinet Inc Glossary ...
Page 398: ...398 01 28006 0010 20041105 Fortinet Inc Index ...