Troubleshooting Tip: SSL VPN stopped working, FortiGate responding with RST
| Description | This article describes the scenario where a working stops working and an RST response packet can be seen on the FortiGate. |
| Scope | FortiGate, FortiOS, SSL VPN. |
| Solution | SSL VPN configured is fully functional. However, it stops working without any SSL VPN config changes.
config vpn ssl settings
On the FortiGate, incoming traffic can be seen with a response as RST, not letting TCP 3-way handshake established.
Internet in 172.16.10.3.51308 -> 192.168.10.1.10443: syn 3088753788 Internet out 192.168.10.1.10443 -> 172.16.10.3.51308 : rst 3088753789
A VIP is added on the same destination port as SSL VPN, stopping it from working as before.
config firewall vip
To fix this:
|
