IP-Framed IPSecv2 Fortigate 7.4
Unfortunately, the option to assign an IP address to a user is not working. In the RADIUS test on the firewall, I can see that it receives an IP address along with the user’s details. Unfortunately, the address is not assigned to the tunnel and the user is allocated an address from the pool. On Windows, RADIUS EAP-MSCHAPv2 is included in the Windows configuration. On the firewall, in the ph1 configuration, I have `set assign-ip-from usrgrp`.
Now, one more question. Should the addresses to be assigned to the user come from the pool
`set ipv4-start-ip 10.xxx.xxx.1`
set ipv4-end-ip 10.xxx.xxx.254
Or should they be outside this range? I’ve tested both approaches. Neither of them worked.