
In the WiFi Settings section, enable Split Tunneling. Go to WiFi & Switch Controller > SSID and edit your SSID. For more information, see “Creating a FortiAP profile” on page 34.Ĭonfiguring the FortiGate for remote FortiAPs Using remote WLAN FortiAPs Configuring split tunneling – FortiGate GUI In the FortiAP profile, you specify the SSIDs that the FortiAP will broadcast. If you were not already using Remote LAN FortiAP models, you will need to create FortiAP profiles for them. When preconfiguring the AP to connect to your FortiGate WiFi controller, you can choose to override split tunneling, optionally including the local subnet of the FortiAP. Go to WiFi & Switch Controller > Managed FortiAPs and edit your managed APs. configure the split tunnel networks in the FortiAP profile.Create FortiAP profiles for the Remote LAN FortiAP models l If split tunneling will be used l configure override split tunneling in Managed FortiAPs l enable Split Tunneling in the SSID.This section assumes that you have already defined SSIDs and now want to make them available to remote FortiAPs. Configuring the FortiGate for remote FortiAPs Split tunneling is configured in Managed FortiAPs, FortiAP Profiles, and enabled in the SSID. You can make these options visible using the following CLI command:Ĭonfig system settings set gui-fortiap-split-tunneling enable Split tunneling avoids loading the FortiGate with unnecessary traffic and allows direct access to local private networks at the location of the FortiAP even if the connection to the WiFi controller goes down.īy default, split tunneling options are not visible in the FortiGate GUI. Other general Internet traffic is routed unencrypted through the local gateway. If split tunneling is configured, only traffic destined for the corporate office networks is routed to the FortiGate. Split tunnelingīy default, all traffic from the remote FortiAP is sent to the FortiGate WiFi controller. Communication between the WiFi controller and the FortiAP is secure, eliminating the need for a VPN. Once plugged in at home or in a hotel room, the FortiAP automatically discovers the enterprise FortiGate WiFi controller over the Internet and broadcasts the same wireless SSID used in the corporate office.

Remote WLAN FortiAP models enable you to provide a pre-configured WiFi access point to a remote or traveling employee.
