Link to home
Start Free TrialLog in
Avatar of Lisaa_G
Lisaa_GFlag for Canada

asked on

Fortigate 80C- firewall rules for PPTP VPN connections

Have just upgraded firewalls to a Fortigate 80C (previously Sonicwall)

Remote users are having trouble establishing VPN connections (Error 800)

The firewall offers only IPSec and SSL under the VPN options so I set the following under firewall rules:-

Source address - all
Destination address  - my server (interface internal)
Schedule  - always
Service PPTP
ACCEPT

What am I missing to allow these VPN connections?

Avatar of Lisaa_G
Lisaa_G
Flag of Canada image

ASKER

Have added the following:-

Source address - all
Destination address  - my server (interface internal)
Schedule  - always
Service PPTP
ACCEPT

Users still getting error code 800 on connection -  Unable to establish a VPN connection.  User was fine earlier this morning on old firewall so I'm assuming this is not a problem at their end.
Avatar of Lisaa_G

ASKER

Sorry Service in previous posting should have read GRE

Did you check the following  (as the error indicates no connections at all)

In your firewall source address interface,  (go to Firewall>Address>Interface) make sure the internet facing internet is selected (This would be your vpn server endpoint)

This is what the manual states if the fortigate is configured as a vpn server

ASKER CERTIFIED SOLUTION
Avatar of bignewf
bignewf
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Also, GRE is a protocol, not a service as explained above. (Just trying to clarify the terms here)

I just set up one of these the other day and it successfully connects using the above scenario

thanks
Avatar of Lisaa_G

ASKER

Thank you - have switched back to old firewall to keep people productive today - I'll make the changes and test later tonight - appreciate the feedback will let you know how it goes