FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Anthony_E
Community Manager
Community Manager
Article Id 192415
Description
This article helps to set trusted host for SSL VPN web mode, SSL VPN tunnel mode and IPsec dialup VPN.

Solution
Define Trusted hosts by going to System -> Admin -> Administrators.

For SSL VPN web mode and IPsec dialup VPN, set IP address configured for the Listen on interface specified in the SSL VPN settings as a trusted host.

For SSL VPN tunnel mode and IPsec dialup VPN, set client address range as a trusted host.

Example.

WanIP (SSL VPN portal) : 172.31.17.177
SSL VPN tunnel mode client address range : 10.212.134.200-10.212.134.210
IPsec dialup VPN client address range : 192.168.10.1-192.168.10.254

Set trusted host by:

Trusted Host 1: 172.31.17.177/255.255.255.255
Trusted Host 2: 10.212.134.192/255.255.255.224
Trusted Host 3: 192.168.10.0/255.255.255.0

Contributors