I wouldn’t say I’m a fortinet god of any sorts to start.
I have a simple ssl vpn setup at a handful of clients. They are all setup the same. This one location however, will not get the ip address range I’m telling it to. In the vpn settings for address range, no matter what I put in there, it only gets the addresses assigned in the default ‘SSL VPN ADDR1’ group. Am I missing something or is this some sort of flaw?
The other locations, get the range I choose based on the group in that setting field.
TIA,
OCB
Set the desired range in the config of the VPN portal you’re assigning. Portal-specified IP-assignment always takes precedence over the one in general SSL-VPN settings.
Are you switching the option to ‘Specify’ and then changing the IP range in the ‘SSLVPN_TUNNEL_ADDR1’ address object?
Yes it’s on ‘specify customer ip ranges’. Hmm. Maybe I’ll try swapping that setting back and forth. I don’t think I tried that.
Did that. Same result. It’s like it’s not allowing me to ‘specify’.
One other thing I noticed. The interface in the address setting is grayed out. It is not at my other locations.
What code version are you on BTW? Are the other sites you have this working on the same version too?
That’s likely because it’s in use so you can’t change it. On your other sites, have you created a separate address object for the range?