Help Remote Access over IPSec VPN and DDNS

I have recently purchase 60F and having a hard time trying to configure it.

Tried Multiple to setup IPSec VPN Connection with DDNS for remote access but failed.

Can anyone guide and give me step by step process.

My Configuration

(Dynamic Ip) WAN Fiber Router As DHCP Server 192.168.29.1 -> Fortigate 60F (NAT) 10.0.0.1/24 -> 10 Systems (10.0.0.1-10.0.0.200)

I want to remotely access my systems from Forticlient Vpn through public dynamic ips.




i’m net to firewall and currently i am testing.

You have double NAT, create a DMZ in your Wan Fiber Router pointing to the Fortinet wan Ip.

If you can change the Wan Fiber Router to Bridge it will be the real solution.

Sorry for digging up old topic, but since Fortinet announced retiring SSL VPN on models with 2GB of RAM (40f and 60f) IPSEC is only way to connect laptop/desktop clients into HQ network.

What about if Fortigate is behind PPPoE or something similar? Is there way to achieve this?

ty

I would start here

Good luck

I’m not saying don’t use IPsec but SSlvpn is basically made for this . You can setup a letsencrypt acme certificate in about 2 mins and then follow the Fortinet SSlvpn guide. You even have two free demo tokens that come with the firewall you can use for two factor. It’s solid it’s easy and for remote access it’s much simpler than IPsec. If you need help with the config let me know and I’ll send you a copy of my cli config for it.

You have double NAT, create a DMZ in your Wan Fiber Router pointing to the Fortinet wan Ip.

I was thinking the same. Vendor has locked the setting in Fiber Router only option i saw IPSec VPN passthrough and i have enabled that.

Thanks. It would be much better if you send me the config.