Solved

PPTP VPN Fortigate 110c

Posted on 2012-03-29
2
1,911 Views
Last Modified: 2012-04-16
Dear experts,

I'm a bit new to the fortinet systems and currently we have a running Fortigate 110c firewall. it works well but my users are complaining about the VPN. They report to me that they constantly get error code "868 port is already open, the connection could not be established". I have no idea of where to look for a solution.

Also i want to create a new and more secure VPN connection with LDAP Authentication. Is this easy to do? If so can anyone tell me please?
0
Comment
Question by:mspren
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 11

Accepted Solution

by:
DIPRAJ earned 500 total points
ID: 37795502
hi...first i am providing the cli command

***********************************************
***********************************************
config vpn pptp
set eip <address_ipv4>
set ip-mode {range | usrgrp}
set local-ip <address_localip>
set sip <address_ipv4>
set status {disable | enable}
set usrgrp <group_name
end

***********************************************
from web-based or gui-
______________________________________________________________


first enable PPTP.. try to enable PPTP from CLI mode
just add a group before selecting the previous option.
select ip mode
then ip address range ...means starting and ending range.
then user group for obtaining ip address for authenticated user

then starting ip and ending ip

local ip/reserved ip for pptp client----means you need to reserve some lan ip for remote client
and also select the pptp user group from the list.


some times you may find that , there is no front end/web based option for pptp vpn.it depends on forti os version.
don't worry enable the same from cli mode..it will work
0
 

Author Closing Comment

by:mspren
ID: 37850672
it was not completeley what i was looking for but it put me in the right direction.
0

Featured Post

Flexible connectivity for any environment

The KE6900 series can extend and deploy computers with high definition displays across multiple stations in a variety of applications that suit any environment. Expand computer use to stations across multiple rooms with dynamic access.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Some of you may have heard that SonicWALL has finally released an app for iOS devices giving us long awaited connectivity for our iPhone's, iPod's, and iPad's. This guide is just a quick rundown on how to get up and running quickly using the app. …
OpenVPN is a great open source VPN server that is capable of providing quick and easy VPN access to your network on the cheap.  By default the software is configured to allow open access to your network.  But what if you want to restrict users to on…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

688 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question