Skip to main content
HS08
New Member
February 14, 2026
Solved

FortiClient Android

  • February 14, 2026
  • 2 replies
  • 630 views

SSL VPN was replaced to IPSEC on FGT version 7.6. I already configure IPSEC IKEv2 with EAP enabled.

But why in forticlient android when select IKEv2 there is no field to enter the credentials?

    2 replies

    HS08
    HS08Author
    New Member
    February 18, 2026

    noted, so android fortigate is not supported for ikev2 with EAP enabled.

    idumancic
    Staff
    February 21, 2026

    hi @HS08 

    FortiClient (Android) supports IPsec VPN using either pre-shared key or X.509 certificate-based authentication, but does not support combining PSK with EAP (Username/Password).

    If only a pre-shared key is used and EAP is disabled, the tunnel will connect successfully, as Username/Password authentication will not be triggered.

     

    If the Username and Password authentication is required, then certificate-based authentication should be used instead, as FortiClient (Android) supports X.509 certificates for IPSEC.

    To configure IPsec Dial-up VPN using signature-based authentication, see this document: Dial-up IPsec VPN with certificate authentication.