2024年5月6日发(作者:)

FortiClient IPSEC VPN 配置说明 ........................................................................................................................ 3

飞塔如何配置SSL VPN ............................................................................................................................................. 7

1.1 SSL VPN功能介绍 ........................................................................................................................................ 7

1.2 典型拓扑结构如下 ...................................................................................................................................... 7

1.3 SSL VPN支持的认证协议有: ..................................................................................................................... 8

1.4 SSL VPN 和 IPSEC VPN比较 ........................................................................................................................ 8

2.Web模式配置................................................................................................................................................. 8

2.1启用SSL VPN ................................................................................................................................................ 9

2.2新建SSL VPN用户 ....................................................................................................................................... 9

2.3 新建SSL VPN用户组 ................................................................................................................................... 9

2.4 建立SSL VPN策略 .................................................................................................................................... 10

2.5 如何设置防火墙默认的SSL VPN登陆端口,具体如下: ....................................................................... 10

2.6 登陆SSL VPN Web模式后的界面如下:.................................................................................................. 11

3.隧道模式配置 ................................................................................................................................................... 11

3.1 修改SSL VPN设置 .................................................................................................................................... 12

3.2 修改SSL VPN用户组 ................................................................................................................................. 12

3.3 配置相关的隧道模式SSL VPN防火墙策略 .............................................................................................. 12

3.4 配置相关的隧道模式SSL VPN的静态路由 .............................................................................................. 13

3.5 如何在客户端启用SSL VPN隧道模式 ...................................................................................................... 14

3.5.1 从外网通过防火墙外网口地址:10443 登陆到防火墙Web模式的SSL VPN入口,进入到SSL

VPN Web模式界面下面,如下图显示: .......................................................................................................... 14

3.5.2 点击左上角的“激活SSL-VPN通道模式”,如下图显示: .................................................................. 14

3.5.3 SSL VPN隧道启动前后客户端系统路由表的变化 ............................................................................... 15

3.6 关于隧道模式的SSL VPN的通道分割功能 .............................................................................................. 16

3.6.1 通道分割模式启动后客户端路由表的变化 ........................................................................................ 16

3.6.2 通道分割功能下面可以基于用户组的IP地址分配功能 .................................................................... 17

4.SSL VPN客户端 ............................................................................................................................................. 18

4.1 Windows下面的SSL VPN客户端 .............................................................................................................. 18

4.2 Linux/Mac下面的SSL VPN客户端............................................................................................................. 19

5.FortiGate 4.0新功能介绍 .............................................................................................................................. 20

5.1 新的FortiGate 4.0防火墙SSL VPN登陆界面设置 ................................................................................... 20

5.1.1 大体上的界面配置如下: .................................................................................................................. 20

5.1.2 如何配置Web模式登陆界面的风格和布局模式(Theme and Layout) .......................................... 21

5.1.3 配置Widget ......................................................................................................................................... 22

PDF 文件使用 "pdfFactory Pro" 试用版本创建

5.1.4 如何配置SSL VPN 的Web模式应用程序控制 .................................................................................. 22

5.1.5 SSL VPN界面配置里面的高级选项 ...................................................................................................... 22

6.其他关于SSL VPN的功能 ............................................................................................................................. 25

6.1 SSL VPN用户监控 ...................................................................................................................................... 25

6.2 用户认证超时和通讯超时时间................................................................................................................. 25

6.3 常用的SSL VPN诊断命令 ......................................................................................................................... 25

怎么通过TFTP刷新飞塔OS................................................................................................................................... 25

飞塔CLI命令行概述 .............................................................................................................................................. 27

飞塔如何升级防火墙硬件? .................................................................................................................................. 29

最快速恢复飞塔管理员密码 .................................................................................................................................. 30

FortiGate自定义IPS阻断迅雷HTTP下载 ............................................................................................................. 30

飞塔如何启用AV,IPS功能及日志记录功能? ..................................................................................................... 33

塔设备入门基础 ..................................................................................................................................................... 37

飞塔重要资料集中录 ............................................................................................................................................. 40

飞塔如何使用CLI通过TFTP升级Fortigate防火墙系统文件 .......................................................................... 42

飞塔IP和MAC地址绑定方法二 ............................................................................................................................ 43

飞塔MSN、BT屏蔽方法(V3.0) .......................................................................................................................... 44

飞塔基于时间的策略控制实例 .............................................................................................................................. 46

飞塔如何配置SSL的VPN(3.0版本) .................................................................................................................... 48

如何升级飞塔(FortiGate)防火墙软件版本 ..................................................................................................... 51

如何升级飞塔(FortiGate)防火墙软件版本 ..................................................................................................... 53

飞塔(FortiGate)防火墙只开放特定浏览网站 ................................................................................................. 54

飞塔(FortiGate)如何封MSN QQ P2P ............................................................................................................... 60

在飞塔(FortiGate)上使用花生壳的动态域名功能 ......................................................................................... 71

飞塔FortiGate端口映射 ..................................................................................................................................... 74

飞塔FortiGate IPSec VPN 动态路由设置步骤 .................................................................................................. 76

飞塔(Fortinet)SSL VPN 隧道模式使用说明 ................................................................................................... 88

PDF 文件使用 "pdfFactory Pro" 试用版本创建