Skip to main content
HS08
Visitor III
February 14, 2026
Solved

FortiClient Android

  • February 14, 2026
  • 2 replies
  • 811 views

SSL VPN was replaced to IPSEC on FGT version 7.6. I already configure IPSEC IKEv2 with EAP enabled.

But why in forticlient android when select IKEv2 there is no field to enter the credentials?

2 replies

funkylicious
SuperUser
SuperUser
February 14, 2026
HS08
HS08Author
Visitor III
February 18, 2026

noted, so android fortigate is not supported for ikev2 with EAP enabled.

Staff
February 21, 2026

hi @HS08 

FortiClient (Android) supports IPsec VPN using either pre-shared key or X.509 certificate-based authentication, but does not support combining PSK with EAP (Username/Password).

If only a pre-shared key is used and EAP is disabled, the tunnel will connect successfully, as Username/Password authentication will not be triggered.

 

If the Username and Password authentication is required, then certificate-based authentication should be used instead, as FortiClient (Android) supports X.509 certificates for IPSEC.

To configure IPsec Dial-up VPN using signature-based authentication, see this document: Dial-up IPsec VPN with certificate authentication.