Skip to main content
FortiMilan
New Member
May 1, 2025
Solved

FortiClient Remote Access VPN – Automatic Failover Without EMS

  • May 1, 2025
  • 1 reply
  • 1087 views

Hello Fortinet Community,

I’ve configured two identical IPsec remote access VPNs on my FortiGate—each mapped to a different WAN interface for redundancy purposes. On FortiClient, I’ve added both VPN gateways. The issue I'm facing is that when I disable WAN1, FortiClient does not automatically failover to the second gateway. Instead, I have to manually reconnect by clicking "Connect" to establish a session with the secondary gateway.

 

I'd like to know is it possible  to automate this failover process, so users experience minimal disruption? Is it possible to achieve automatic remote access VPN failover in FortiClient without using EMS?

FortiClient.jpg

Thank you!

 

Best answer by jiahoong112

this vpn failover feature requires EMS to work: https://docs.fortinet.com/document/forticlient/7.0.0/ems-administration-guide/950344/configuring-a-backup-vpn-connection 

 

within the free version of forticlient, this is not supported. 

1 reply

jiahoong112
Staff
Staff
May 1, 2025

this vpn failover feature requires EMS to work: https://docs.fortinet.com/document/forticlient/7.0.0/ems-administration-guide/950344/configuring-a-backup-vpn-connection 

 

within the free version of forticlient, this is not supported. 

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!