FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
salmas
Staff
Staff
Article Id 306486
Description This article describes how to resolve an issue where the address group is not visible when trying to add it to 'Limit access to specific hosts' under SSL VPN settings.
Scope FortiGate.
Solution

In this example, the 'Allowed-vpn-hosts' group has two addresses. One is IPv4 and the other is a MAC-address.

 

Remove MAC-Bases-Host.png

  

When trying to add this group via the GUI, the group is not visible.

 

Allowed-vpn-hosts_group not present in GUI.png

Upon checking the same settings under the CLI, address group will be visible to add and can be added without any issue.

 

Group added via CLI.png

However, it will not be available in the GUI even if it has been added through the CLI:

 

Group not visible in GUI.png

Now, just remove the MAC-address object from the 'Allowed-vpn-hosts' group. The address group will show automatically under the 'Limit access to specific hosts' section in SSL VPN settings.

 

Group Available now.png
Contributors