A new service known as "Cloud-Assisted One-Click VPN" (Cloud-Assisted One-Click VPN) has been introduced since version 6.0.
OCVPN is a Cloud-based solution that greatly simplifies the provisioning and configuration of IPsec VPNs. The Administrator activates OCVPN with one click, adds the required Subnets, and then the configuration is complete.

The OCVPN solution automatically updates each FortiGate, creates VPNs on registered computers, and the service is automatically changed using a dynamic IP even if one of the computers changes its WAN IP.

The service has the following limitations
  • Fortigate Firewall must have a valid FortiCare Support license.
  • Only Full-mesh VPN configurations using PSK encryption are supported.
  • Public IP addresses must be used (Fortigate cannot join behind a NAT router)
  • Non-root VDOMs and FortiGate VMs are not supported.
  • Up to 16 nodes can be added to the OCVPN cloud, each consisting of up to 16 subnets.
You can find the details of the configuration in more detail from the link.


