Fortinet 100A Router User Manual


 
260 01-28007-0068-20041203 Fortinet Inc.
PPTP range VPN
PPTP
FortiGate units support PPTP to tunnel PPP traffic between two VPN peers. Windows
or Linux PPTP clients can establish a PPTP tunnel with a FortiGate unit that has been
configured to act as a PPTP server. As an alternative, you can configure the FortiGate
unit to forward PPTP packets to a PPTP server on the network behind the FortiGate
unit.
For information about how to perform these tasks, see “PPTP configuration
procedures” on page 268.
To enable PPTP and specify the PPTP address range
1 Go to VPN > PPTP > PPTP Range.
2 Enable PPTP and specify the address range.
PPTP range
The PPTP address range is the range of addresses reserved for remote PPTP clients.
When the remote PPTP client connects, the FortiGate unit assigns an IP address from
a reserved range of IP addresses to the client PPTP interface. The PPTP client uses
the assigned IP address as its source address for the duration of the connection.
Figure 133:PPTP range
Name The name of the tunnel.
Remote gateway The IP address and UDP port of the remote gateway. For dynamic DNS
tunnels, the IP address is updated dynamically.
Timeout The time before the next key exchange. The time is calculated by
subtracting the time elapsed since the last key exchange from the keylife.
Proxy ID Source The IP address of the host, server, or private network behind the FortiGate
unit. A network range may be displayed if the source address in the firewall
encryption policy was expressed as a range of IP addresses.
Proxy ID
Destination
The IP address of the remote peer.
Bring down
tunnel icon
Take down the selected VPN tunnel. The remote VPN peer may have to
reconnect to establish a new VPN session.
Bring up tunnel
icon
Establish the selected VPN tunnel.