{"id":3091,"date":"2021-07-26T13:03:53","date_gmt":"2021-07-26T13:03:53","guid":{"rendered":"http:\/\/www.marsbilgi.com\/?p=3091"},"modified":"2021-07-26T13:14:37","modified_gmt":"2021-07-26T13:14:37","slug":"fortigate-ssl-vpn-ayarlari","status":"publish","type":"post","link":"https:\/\/www.marsbilgi.com\/index.php\/2021\/07\/26\/fortigate-ssl-vpn-ayarlari\/","title":{"rendered":"Fortigate SSL VPN Ayarlar\u0131"},"content":{"rendered":"<p>Merhaba,<\/p><p>Bu yaz\u0131mda size Fortigate V 5.2.1 \u00fczerinde SSL VPN kurulumdan bahsedece\u011fim. Bu yap\u0131lan kurulum ile kullan\u0131c\u0131lar Windows IOS ve MAC OS bilgisayarlar \u00fczerinden mevcut sistemlere ba\u011flant\u0131 sa\u011flayabilmektedirler. Bahsetmi\u015f oldu\u011fum yap\u0131n\u0131n basit bir \u015femas\u0131n\u0131 a\u015fa\u011f\u0131da g\u00f6rebilirsiniz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"995\" height=\"424\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Topoloji.jpg\" alt=\"\" class=\"wp-image-3092\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Topoloji.jpg 995w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Topoloji-300x128.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Topoloji-768x327.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Topoloji-760x324.jpg 760w\" sizes=\"(max-width: 995px) 100vw, 995px\" \/><\/figure><p>Tablo: <a href=\"http:\/\/www.fortinet.com\">www.fortinet.com<\/a><\/p><p>Bu gibi durumlarda kullan\u0131c\u0131lar \u015firket i\u00e7erisinde \u00e7al\u0131\u015f\u0131r gibi ev veya i\u015f yeri d\u0131\u015far\u0131ndan sistem de rahatl\u0131kla ofiste gibi \u00e7al\u0131\u015fabilmektedirler. S\u00f6z\u00fc fazla uzatmadan anlatmaya ba\u015fl\u0131yorum.<\/p><p>\u0130lk olarak sisteme login olmalar\u0131 i\u00e7in Fortigate \u00fczerinden bir kullan\u0131c\u0131 a\u00e7mam\u0131z gerekli. E\u011fer sistemde AD var ve fortigate ile birlikte \u00e7al\u0131\u015f\u0131yor ise AD kullan\u0131c\u0131 ile de sisteme login olabilmektedirler. Bizim sistemimizde b\u00f6yle bir yap\u0131 olmad\u0131\u011f\u0131 i\u00e7in Fortigate \u00fczerinden VPN kullan\u0131c\u0131 olu\u015fturaca\u011f\u0131z. Bunun i\u00e7in;<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"351\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-1-1024x351.jpg\" alt=\"\" class=\"wp-image-3093\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-1-1024x351.jpg 1024w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-1-300x103.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-1-768x263.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-1-760x260.jpg 760w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-1.jpg 1325w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure><p>\u201cUser &amp; Device \u201c b\u00f6l\u00fcm\u00fcnden \u201cUser Definition\u201d k\u0131sm\u0131na geliyoruz. \u201c Create New\u201d diyerek devam ediyoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"965\" height=\"445\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-2.jpg\" alt=\"\" class=\"wp-image-3094\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-2.jpg 965w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-2-300x138.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-2-768x354.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-2-760x350.jpg 760w\" sizes=\"(max-width: 965px) 100vw, 965px\" \/><\/figure><p>\u201cLocal User\u201d i\u015faretleyerek \u201cNext\u201d diyoruz<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"974\" height=\"455\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-3.jpg\" alt=\"\" class=\"wp-image-3095\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-3.jpg 974w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-3-300x140.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-3-768x359.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-3-760x355.jpg 760w\" sizes=\"(max-width: 974px) 100vw, 974px\" \/><\/figure><p>Burada kullan\u0131c\u0131n bilgilerini olu\u015fturuyoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"975\" height=\"458\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-4.jpg\" alt=\"\" class=\"wp-image-3096\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-4.jpg 975w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-4-300x141.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-4-768x361.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-4-760x357.jpg 760w\" sizes=\"(max-width: 975px) 100vw, 975px\" \/><\/figure><p>Bu k\u0131sm\u0131 iste\u011fe ba\u011fl\u0131 doldurabilirsiniz. Ben bo\u015f ge\u00e7iyorum.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"953\" height=\"436\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-5.jpg\" alt=\"\" class=\"wp-image-3097\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-5.jpg 953w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-5-300x137.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-5-768x351.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-5-760x348.jpg 760w\" sizes=\"(max-width: 953px) 100vw, 953px\" \/><\/figure><p>Kullan\u0131c\u0131 profili olu\u015fturulmu\u015ftur. \u201cCreate\u201d diyerek i\u015flemi bitiriyoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"483\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-6-1024x483.jpg\" alt=\"\" class=\"wp-image-3098\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-6-1024x483.jpg 1024w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-6-300x141.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-6-768x362.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-6-760x358.jpg 760w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-6.jpg 1147w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure><p>Ekran\u0131m\u0131z\u0131 kapatt\u0131ktan sonra bu kullan\u0131c\u0131lar\u0131 bir grup alt\u0131nda toplamam\u0131z gerekmektedir. \u201cUser Groups\u201d \u201cCreate New\u201d ile devam ediyoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"857\" height=\"429\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-7.jpg\" alt=\"\" class=\"wp-image-3099\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-7.jpg 857w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-7-300x150.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-7-768x384.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-7-760x380.jpg 760w\" sizes=\"(max-width: 857px) 100vw, 857px\" \/><\/figure><p>Kar\u015f\u0131m\u0131za gelen ekranda grubumuza bir isim veriyoruz. \u201cMembers\u201d k\u0131sm\u0131nda ise yukar\u0131da olu\u015fturmu\u015f oldu\u011fumuz kullan\u0131c\u0131y\u0131 se\u00e7iyoruz. Art\u0131k bir kullan\u0131c\u0131m\u0131z ve ba\u011fl\u0131 oldu\u011fu bir grup olu\u015fturduk. \u015eimdi ise Firewall taraf\u0131ndaki ayalar\u0131 yap\u0131land\u0131rabiliriz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"672\" height=\"563\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-8.jpg\" alt=\"\" class=\"wp-image-3100\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-8.jpg 672w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-8-300x251.jpg 300w\" sizes=\"(max-width: 672px) 100vw, 672px\" \/><\/figure><p>VPN kullan\u0131c\u0131lar\u0131n\u0131n Local networke ba\u011flanmas\u0131 i\u00e7in i\u00e7in Firewall \u00fczerinde Local network\u00fcm\u00fcz i\u00e7in adres olu\u015fturmam\u0131z gerekmektedir. Bunun i\u00e7in; \u201cPolicy &amp; Objects\u201d k\u0131sm\u0131ndan \u201cAddresses\u201d k\u0131sm\u0131n\u0131 a\u00e7\u0131yoruz. \u201cCreate New\u201d diyerek devam ediyoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"954\" height=\"417\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-9.jpg\" alt=\"\" class=\"wp-image-3101\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-9.jpg 954w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-9-300x131.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-9-768x336.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-9-760x332.jpg 760w\" sizes=\"(max-width: 954px) 100vw, 954px\" \/><\/figure><p>Local network blo\u011fumuzu olu\u015fturduktan sonra \u201cOK\u201d se\u00e7ene\u011fi ile devam ediyoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"880\" height=\"487\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-10.jpg\" alt=\"\" class=\"wp-image-3102\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-10.jpg 880w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-10-300x166.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-10-768x425.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-10-760x421.jpg 760w\" sizes=\"(max-width: 880px) 100vw, 880px\" \/><\/figure><p>\u0130\u015flemlerimizi tamamlad\u0131\u011f\u0131m\u0131za g\u00f6re art\u0131k VPN ba\u011flant\u0131m\u0131z\u0131 kurabiliriz. Bunun i\u00e7in \u201cVPN\u201d k\u0131sm\u0131ndan \u201cWizard\u201d \u0131 a\u00e7\u0131yoruz. Dialup \u2013 FortiClient diyerek devam ediyoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"898\" height=\"428\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-11.jpg\" alt=\"\" class=\"wp-image-3103\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-11.jpg 898w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-11-300x143.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-11-768x366.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-11-760x362.jpg 760w\" sizes=\"(max-width: 898px) 100vw, 898px\" \/><\/figure><p>Bu b\u00f6l\u00fcmde kullan\u0131c\u0131lar\u0131m\u0131z\u0131n hangi WAN baca\u011f\u0131 ile ba\u011flant\u0131 kuraca\u011f\u0131n\u0131, VPN \u015fifresini ve Yukar\u0131da olu\u015fturmu\u015f oldu\u011fumuz grubumuzu se\u00e7iyoruz. \u0130\u015flemler bittikten sonra \u201cnext\u201d diyerek devam ediyoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"934\" height=\"523\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-12.jpg\" alt=\"\" class=\"wp-image-3104\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-12.jpg 934w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-12-300x168.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-12-768x430.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-12-760x426.jpg 760w\" sizes=\"(max-width: 934px) 100vw, 934px\" \/><\/figure><p>Bu b\u00f6l\u00fcmde ise Firewall Local baca\u011f\u0131n\u0131, yukar\u0131da olu\u015fturdu\u011fumuz Network blo\u011fumuzu ve VPN ile gelecek kullan\u0131c\u0131lar\u0131n alaca\u011f\u0131 IP blo\u011funu yaz\u0131yoruz. \u201cClient Adress Range\u201d k\u0131sm\u0131na kullan\u0131c\u0131lar\u0131n hangi&nbsp; IP blo\u011fu ile ba\u011flanaca\u011f\u0131n\u0131 se\u00e7iyoruz. \u0130\u015flemlerimizi bittikten sonra \u201cnext\u201d diyerek devam ediyoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"886\" height=\"419\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-13.jpg\" alt=\"\" class=\"wp-image-3105\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-13.jpg 886w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-13-300x142.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-13-768x363.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-13-760x359.jpg 760w\" sizes=\"(max-width: 886px) 100vw, 886px\" \/><\/figure><p>T\u00fcm i\u015flemlerimizi bittikten sonra \u201cCreate\u201d ile i\u015flemlerimizi tamaml\u0131yoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"920\" height=\"525\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-14.jpg\" alt=\"\" class=\"wp-image-3106\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-14.jpg 920w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-14-300x171.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-14-768x438.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-14-760x434.jpg 760w\" sizes=\"(max-width: 920px) 100vw, 920px\" \/><\/figure><p>G\u00f6rm\u00fc\u015f oldu\u011funuz gibi i\u015flem tamamland\u0131ktan sonra \u201cPolicy\u201d k\u0131sm\u0131na kural olu\u015fturulmu\u015f durumdad\u0131r. Firewall taraf\u0131nda i\u015flemlerimizi tamamlad\u0131\u011f\u0131m\u0131za g\u00f6re art\u0131k client taraf\u0131ndaki i\u015flemlerimize ge\u00e7ebiliriz.<\/p><p>Bunun i\u00e7in ilk olarak <a href=\"http:\/\/www.forticlient.com\">www.forticlient.com<\/a> adresine giderek sistemimiz i\u00e7in uyumlu \u201cForticlient\u201d yaz\u0131l\u0131m\u0131n\u0131 indirmemiz gerekmektedir.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"644\" height=\"576\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-15.jpg\" alt=\"\" class=\"wp-image-3107\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-15.jpg 644w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-15-300x268.jpg 300w\" sizes=\"(max-width: 644px) 100vw, 644px\" \/><\/figure><p>Yaz\u0131l\u0131m\u0131m\u0131z indirdik ve kurduktan sonra kar\u015f\u0131m\u0131za yukar\u0131daki gibi bir ekran gelmektedir. VPN ba\u011flant\u0131m\u0131z\u0131 sa\u011flamak i\u00e7in \u201cAdd a new connection\u201d k\u0131sm\u0131n\u0131 a\u00e7\u0131yoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"642\" height=\"572\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-16.jpg\" alt=\"\" class=\"wp-image-3108\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-16.jpg 642w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-16-300x267.jpg 300w\" sizes=\"(max-width: 642px) 100vw, 642px\" \/><\/figure><p>Kar\u015f\u0131m\u0131za gelen ekranda \u201cIPsec VPN\u201d b\u00f6l\u00fcm\u00fcnde bilgilerimizi dolduruyoruz. \u0130\u015flemleri bitirdikten sonra \u201cApply\u201d diyerek kapat\u0131yoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"647\" height=\"580\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-17.jpg\" alt=\"\" class=\"wp-image-3109\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-17.jpg 647w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-17-300x269.jpg 300w\" sizes=\"(max-width: 647px) 100vw, 647px\" \/><\/figure><p>VPN taraf\u0131n\u0131 doldurdu\u011fumuza g\u00f6re art\u0131k ba\u011flant\u0131 sa\u011flayabiliriz. \u0130lk olarak olu\u015fturdu\u011fumuz kullan\u0131c\u0131 ad\u0131 ve \u015fifremiz ile sisteme login oluyoruz.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"643\" height=\"508\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-18.jpg\" alt=\"\" class=\"wp-image-3110\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-18.jpg 643w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-18-300x237.jpg 300w\" sizes=\"(max-width: 643px) 100vw, 643px\" \/><\/figure><p>Ba\u011flant\u0131 sa\u011flad\u0131k. Sistemimiz do\u011fru \u00e7al\u0131\u015fmaktad\u0131r. Yukar\u0131da da g\u00f6rd\u00fc\u011f\u00fcn\u00fcz gibi gelen ve giden trafik olu\u015fmaktad\u0131r.<\/p><figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"347\" src=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-19-1024x347.jpg\" alt=\"\" class=\"wp-image-3111\" srcset=\"https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-19-1024x347.jpg 1024w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-19-300x102.jpg 300w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-19-768x260.jpg 768w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-19-760x258.jpg 760w, https:\/\/www.marsbilgi.com\/wp-content\/uploads\/2021\/07\/Fortigate-IP-Sec-VPN-19.jpg 1336w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure><p>Fortigate taraf\u0131nda da IPsec Monit\u00f6r k\u0131sm\u0131nda ba\u011flant\u0131m\u0131z\u0131 g\u00f6rebilirsiniz.<\/p><p>Umar\u0131m faydal\u0131 olabilmi\u015fimdir. Bir dahaki makalede g\u00f6r\u00fc\u015fmek \u00fczere\u2026<\/p>","protected":false},"excerpt":{"rendered":"<p>Merhaba, Bu yaz\u0131mda size Fortigate V 5.2.1 \u00fczerinde SSL VPN kurulumdan bahsedece\u011fim. Bu yap\u0131lan kurulum ile kullan\u0131c\u0131lar Windows IOS ve MAC OS bilgisayarlar \u00fczerinden mevcut sistemlere ba\u011flant\u0131 sa\u011flayabilmektedirler. Bahsetmi\u015f oldu\u011fum yap\u0131n\u0131n basit bir \u015femas\u0131n\u0131 a\u015fa\u011f\u0131da g\u00f6rebilirsiniz. Tablo: www.fortinet.com Bu gibi durumlarda kullan\u0131c\u0131lar \u015firket i\u00e7erisinde \u00e7al\u0131\u015f\u0131r gibi ev veya i\u015f yeri d\u0131\u015far\u0131ndan sistem de rahatl\u0131kla ofiste gibi \u00e7al\u0131\u015fabilmektedirler. S\u00f6z\u00fc fazla uzatmadan anlatmaya ba\u015fl\u0131yorum. \u0130lk olarak sisteme login olmalar\u0131 i\u00e7in Fortigate \u00fczerinden bir kullan\u0131c\u0131 a\u00e7mam\u0131z gerekli. E\u011fer sistemde AD var ve fortigate ile birlikte \u00e7al\u0131\u015f\u0131yor ise AD kullan\u0131c\u0131 ile de sisteme login olabilmektedirler. Bizim sistemimizde b\u00f6yle bir yap\u0131 olmad\u0131\u011f\u0131 i\u00e7in Fortigate \u00fczerinden VPN kullan\u0131c\u0131 olu\u015fturaca\u011f\u0131z. Bunun i\u00e7in; \u201cUser &amp; Device \u201c b\u00f6l\u00fcm\u00fcnden \u201cUser Definition\u201d k\u0131sm\u0131na geliyoruz. \u201c Create New\u201d diyerek devam ediyoruz. \u201cLocal User\u201d i\u015faretleyerek \u201cNext\u201d diyoruz Burada kullan\u0131c\u0131n bilgilerini olu\u015fturuyoruz. Bu k\u0131sm\u0131 iste\u011fe ba\u011fl\u0131 doldurabilirsiniz. Ben bo\u015f ge\u00e7iyorum. Kullan\u0131c\u0131 profili olu\u015fturulmu\u015ftur. \u201cCreate\u201d diyerek i\u015flemi bitiriyoruz. Ekran\u0131m\u0131z\u0131 kapatt\u0131ktan sonra bu kullan\u0131c\u0131lar\u0131 bir grup alt\u0131nda toplamam\u0131z gerekmektedir. \u201cUser Groups\u201d \u201cCreate New\u201d ile devam ediyoruz. Kar\u015f\u0131m\u0131za gelen ekranda grubumuza bir isim veriyoruz. \u201cMembers\u201d k\u0131sm\u0131nda ise yukar\u0131da olu\u015fturmu\u015f oldu\u011fumuz kullan\u0131c\u0131y\u0131 se\u00e7iyoruz. Art\u0131k bir kullan\u0131c\u0131m\u0131z ve ba\u011fl\u0131 oldu\u011fu bir grup olu\u015fturduk. \u015eimdi ise Firewall taraf\u0131ndaki ayalar\u0131 yap\u0131land\u0131rabiliriz. VPN kullan\u0131c\u0131lar\u0131n\u0131n Local networke ba\u011flanmas\u0131 i\u00e7in i\u00e7in Firewall \u00fczerinde Local network\u00fcm\u00fcz i\u00e7in adres olu\u015fturmam\u0131z gerekmektedir. Bunun i\u00e7in; \u201cPolicy &amp; Objects\u201d k\u0131sm\u0131ndan \u201cAddresses\u201d k\u0131sm\u0131n\u0131 a\u00e7\u0131yoruz. \u201cCreate New\u201d diyerek devam ediyoruz. Local network blo\u011fumuzu olu\u015fturduktan sonra \u201cOK\u201d se\u00e7ene\u011fi ile devam ediyoruz. \u0130\u015flemlerimizi tamamlad\u0131\u011f\u0131m\u0131za g\u00f6re art\u0131k VPN ba\u011flant\u0131m\u0131z\u0131 kurabiliriz. Bunun i\u00e7in \u201cVPN\u201d k\u0131sm\u0131ndan \u201cWizard\u201d \u0131 a\u00e7\u0131yoruz. Dialup \u2013 FortiClient diyerek devam ediyoruz. Bu b\u00f6l\u00fcmde kullan\u0131c\u0131lar\u0131m\u0131z\u0131n hangi WAN baca\u011f\u0131 ile ba\u011flant\u0131 kuraca\u011f\u0131n\u0131, VPN \u015fifresini ve Yukar\u0131da olu\u015fturmu\u015f oldu\u011fumuz grubumuzu se\u00e7iyoruz. \u0130\u015flemler bittikten sonra \u201cnext\u201d diyerek devam ediyoruz. Bu b\u00f6l\u00fcmde ise Firewall Local baca\u011f\u0131n\u0131, yukar\u0131da olu\u015fturdu\u011fumuz Network blo\u011fumuzu ve VPN ile gelecek kullan\u0131c\u0131lar\u0131n alaca\u011f\u0131 IP blo\u011funu yaz\u0131yoruz. \u201cClient Adress Range\u201d k\u0131sm\u0131na kullan\u0131c\u0131lar\u0131n hangi&nbsp; IP blo\u011fu ile ba\u011flanaca\u011f\u0131n\u0131 se\u00e7iyoruz. \u0130\u015flemlerimizi bittikten sonra \u201cnext\u201d diyerek devam ediyoruz. T\u00fcm i\u015flemlerimizi bittikten sonra \u201cCreate\u201d ile i\u015flemlerimizi tamaml\u0131yoruz. G\u00f6rm\u00fc\u015f oldu\u011funuz gibi i\u015flem tamamland\u0131ktan sonra \u201cPolicy\u201d k\u0131sm\u0131na kural olu\u015fturulmu\u015f durumdad\u0131r. Firewall taraf\u0131nda i\u015flemlerimizi tamamlad\u0131\u011f\u0131m\u0131za g\u00f6re art\u0131k client taraf\u0131ndaki i\u015flemlerimize ge\u00e7ebiliriz. Bunun i\u00e7in ilk olarak www.forticlient.com adresine giderek sistemimiz i\u00e7in uyumlu \u201cForticlient\u201d yaz\u0131l\u0131m\u0131n\u0131 indirmemiz gerekmektedir. Yaz\u0131l\u0131m\u0131m\u0131z indirdik ve kurduktan sonra kar\u015f\u0131m\u0131za yukar\u0131daki gibi bir ekran gelmektedir. VPN ba\u011flant\u0131m\u0131z\u0131 sa\u011flamak i\u00e7in \u201cAdd a new connection\u201d k\u0131sm\u0131n\u0131 a\u00e7\u0131yoruz. Kar\u015f\u0131m\u0131za gelen ekranda \u201cIPsec VPN\u201d b\u00f6l\u00fcm\u00fcnde bilgilerimizi dolduruyoruz. \u0130\u015flemleri bitirdikten sonra \u201cApply\u201d diyerek kapat\u0131yoruz. VPN taraf\u0131n\u0131 doldurdu\u011fumuza g\u00f6re art\u0131k ba\u011flant\u0131 sa\u011flayabiliriz. \u0130lk olarak olu\u015fturdu\u011fumuz kullan\u0131c\u0131 ad\u0131 ve \u015fifremiz ile sisteme login oluyoruz. Ba\u011flant\u0131 sa\u011flad\u0131k. Sistemimiz do\u011fru \u00e7al\u0131\u015fmaktad\u0131r. Yukar\u0131da da g\u00f6rd\u00fc\u011f\u00fcn\u00fcz gibi gelen ve giden trafik olu\u015fmaktad\u0131r. Fortigate taraf\u0131nda da IPsec Monit\u00f6r k\u0131sm\u0131nda ba\u011flant\u0131m\u0131z\u0131 g\u00f6rebilirsiniz. Umar\u0131m faydal\u0131 olabilmi\u015fimdir. Bir dahaki makalede g\u00f6r\u00fc\u015fmek \u00fczere\u2026<\/p>\n","protected":false},"author":1,"featured_media":3092,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_uf_show_specific_survey":0,"_uf_disable_surveys":false,"footnotes":""},"categories":[60,61],"tags":[],"class_list":["post-3091","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-firewall","category-fortigate"],"aioseo_notices":[],"views":135,"_links":{"self":[{"href":"https:\/\/www.marsbilgi.com\/index.php\/wp-json\/wp\/v2\/posts\/3091","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.marsbilgi.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.marsbilgi.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.marsbilgi.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.marsbilgi.com\/index.php\/wp-json\/wp\/v2\/comments?post=3091"}],"version-history":[{"count":0,"href":"https:\/\/www.marsbilgi.com\/index.php\/wp-json\/wp\/v2\/posts\/3091\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.marsbilgi.com\/index.php\/wp-json\/wp\/v2\/media\/3092"}],"wp:attachment":[{"href":"https:\/\/www.marsbilgi.com\/index.php\/wp-json\/wp\/v2\/media?parent=3091"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.marsbilgi.com\/index.php\/wp-json\/wp\/v2\/categories?post=3091"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.marsbilgi.com\/index.php\/wp-json\/wp\/v2\/tags?post=3091"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}