FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Not applicable
Article Id 197489
Article

Description

Granting unique access permissions for VPN users groups

Components

FortiGate v2.50 (and v2.80)

FortiClient v1.0 , v1.2 , v2.0

Summary

This case study considers how you can grant different groups of remote VPN users access to different subnets at a central site.

In this particular example,
group #1 -- allow access to the internal LAN only
group #2 -- allow access the DMZ subnet only

Note: simultaneous access to multiple subnets via the same VPN gateway is also possible (though not discussed in this paper).

For more information see the related article "FortiClient accessing multiple subnets".

The attached document also contains VPN debug output which can be helpful when troubleshooting a connectivity problem.