Skip to main content
Contributor III
February 9, 2011
Question

FortiClient Will Not Obtain IP Address

  • February 9, 2011
  • 4 replies
  • 4203 views
4.2.3.271 on Windows 7 64 Bit VPN' s to firewalls where I do NOT have it obtain an IP via DHCP work fine. VPN' s to firewalls where I have it set to obtain IP via DHCP will go through the first 4 steps and then hang until it errors out. Help? thanks.

    4 replies

    L_FTNT
    Staff
    Staff
    February 9, 2011
    Is the tunnel configured using the IPSec Interface Mode on Fortigate? Have you configured DHCP on Fortigate? If so, can you describe the configuration in detail? have you enabled IPsec-DHCP for the Phase 2? Regards, L.C.
    fcb
    Visitor III
    March 1, 2011
    I have the exact same problem. If I assign static IP to FortiClient, it connects, if I use DHCP, it times out. XP and 32 bit hosts work as expected and pull IP' s. Anyone?
    L_FTNT
    Staff
    Staff
    March 1, 2011
    I just tried on Windows 7 64bits OS and it had no problem to obtain IP address via DHCP. What does the error message say? You mentioned that XP and 32bit hosts work as expected, but not Win 7 64bits. This means that the VPN configurations on FortiGate probably is fine (assuming the 64bits host uses the exact same tunnel setup on FortiGate). If this is the case, it must be something different on the host. Do you have any other AntiVirus software or other VPN client installed on the 64bits host? If the host uses a different VPN setup on FortiGate, you need to check the configurations on FortiGate to make sure things are properly configured . L.Clarke
    fcb
    Visitor III
    March 15, 2011
    If you look at the FortiClientTools_4.2.3.0271.zip file on the firmware section of the support web site, there is a utility for this very thing regarding your windows 7 machines. It is called: ReinstallNIC.exe Below and underlined are the release notes that talk about it: FortiClientTools_4.2.3.0271.zip A zip package containing installer tools, including FCRepackager. MSI installer can be customized with FCRepackager. Read the FCRepackager readme file for more information. The FCInstallerLight.exe is __not__ intended for end users. It' s the installer agent used by the Endpoint Compliance feature from FortiOS v4.0 and above. vpn_com_examples.zip contains reference implementations of the VPN feature' s COM scripting interface. RemoveFCTID.exe is documented in the FortiClient Administrators Guide. FCRemove.exe is a clean up tool for use __only_if__ the Add/Remove Programs applet fails to remove FortiClient. ReinstallNIC.exe is a tool for use on Windows 7 if DHCP address allocation is slow. FCWFWCleanup.exe is a clean up tool for removal of FortiClient entries from Windows FW (Windows Vista and above). FCManage.exe is for turning installed FortiClients that are unmanaged into managed FortiClients. It worked for me with those exact symptoms on my Windows 7 64 and 32 bit machines! Please reply to let us know if it corrected your issue.