PPTP VPN PPTP configuration using CLI commands
FortiGate Version 4.0 MR1 Administration Guide
01-410-89802-20090903 631
http://docs.fortinet.com/ • Feedback
Figure 388: Edit PPTP range options, showing both Range and User Group
PPTP configuration using CLI commands
If you prefer not to set up a customized screen in the FortiGate web-based manager, you
can configure the PPTP tunnel using CLI.
Syntax
config vpn pptp
set eip <address_ipv4>
set ip-mode {range | usrgrp}
set local-ip <address_localip>
set sip <address_ipv4>
set status {disable | enable}
set usrgrp <group_name>
end
Enable PPTP Enable PPTP. You must add a user group before you can select the
option. See “User Group” on page 666.
IP Mode Select how PPTP users are assigned an IP address.
Range User’s IP addresses are assigned from the range of IP addresses
configured by Starting IP and Ending IP.
User Group User’s IP addresses are assigned by the user group used to
authenticate the user. Select the user group. See “Dynamically
assigning VPN client IP addresses from a user group” on page 673.
Starting IP Type the starting address in the range of reserved IP addresses.
Ending IP Type the ending address in the range of reserved IP addresses.
Local IP Type the IP address to be used for the peer’s remote IP on the PPTP
client side.
User Group Select the PPTP user group from the list.
Disable PPTP Select to disable PPTP support.
Variables Description Default
eip <address_ipv4> The ending address of the PPTP address range. 0.0.0.0