Fortinet NSE 4 7.2 — Remote Access IPSec Tunnel

dorian5
Oct 4, 2023

--

This is the next in a series of lab exercises I designed and implemented while studying for the Fortinet NSE 4 exam. If you have a Fortinet account you can download an unlicensed version of FortiClient for lab testing.

Laptop w/ Forticlient: 192.168.16.2
Fortigate client gateway: 192.168.16.1
Remote Server (Rasp Pi): 10.10.10.2

Client

FortiClient
Client IP addresses
FortiClient connected to FortiGate

FortiGate

IPSec Widget
Tunnel Configuration
Phase I Configuration
Phase I Configuration
XAuth Enabled
XAuth User
Phase II Configuration

Policy — Created Automatically, outgoing interface and destination come from “local interface” and “local address” in tunnel wizard.
Source IP range also created automatically.

Route added upon Connection from Client

System Events → VPN

System Events → Endpoint Events

--

--