u/Immediate-Writing433

IPSEC Access Between Connections

Hi,

I have a central Fortigate (10.100.x.x) connected with a site to site connection to several other IPSEC VPNs (10.15.x.x). I have a remote access IPSEC connection for remote administration (10.16.x.x) used only by administrators, this remote access connection works fine accessing the 10.100.x.x network.

I would like to have access between the remote access IPSEC and the site to site connections through the central Fortigate, currently I'm reliant on RDP'ing into a server on the 10.100.x.x network in order to administer the remote sites which doesn't work well for us.

I've read about hub and spoke but most of the links on the Fortigate site don't work and others talk about connections between multiple site to site connections involving BGP which I am not sure I need.

I don't think it's as simple as adding the network to the Phase 2 selector of the remote access VPN.

Could anyone help me with what I need to do to get this working?

reddit.com
u/Immediate-Writing433 — 3 days ago

User GPO on select computers

Hi,

I have a GPO to create a shared drive when a user is a member of a security group, hardcore AD I know. This GPO being in the user realm.

I need this to apply to both members of the security group AND also computers NOT in a specific OU (so servers in the main).

Would anyone be able to tell me the best way of doing this, I've read about loopback processing and the more I read the more confused I get as this reads that it is for the computer realm only.

reddit.com
u/Immediate-Writing433 — 3 days ago