Sorry for digging up old topic, but since Fortinet announced retiring SSL VPN on models with 2GB of RAM (40f and 60f) IPSEC is only way to connect laptop/desktop clients into HQ network.
What about if Fortigate is behind PPPoE or something similar? Is there way to achieve this?
I’m not saying don’t use IPsec but SSlvpn is basically made for this . You can setup a letsencrypt acme certificate in about 2 mins and then follow the Fortinet SSlvpn guide. You even have two free demo tokens that come with the firewall you can use for two factor. It’s solid it’s easy and for remote access it’s much simpler than IPsec. If you need help with the config let me know and I’ll send you a copy of my cli config for it.