FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
akumarr
Staff
Staff
Article Id 191673
Description
This article describes the solution to overcome 'Destination address of split-tunneling policy is invalid'.

Solution
While creating an IPv4 policy for SSL VPN, 'Destination address of split-tunnelling policy is invalid' error can appear.

Check the image below.





This error is because the split tunnel in the SSL VPN portal  has an subnet 'internal' as routing address, so while creating policy, make sure the destination also has the specific subnet mentioned in the split tunnel.






Add the address object 'internal' as destination in the SSL VPN policy.




Contributors