Skip to main content
IhabAlBzour
Visitor III
June 24, 2025
Question

IPSEC for mobile android and ios

  • June 24, 2025
  • 3 replies
  • 1348 views

there is problem when i config IPSEC in my forticlient mobile in android an ios and i use IKE1 but there is problem when connected (Could not establish session on the IPsec daemon) and the other problem in ios when i config IKE1 there is not open phase1 or 2,how i can solve it :)

 

 

step by step in fortigate and forticlient plz

3 replies

AEK
SuperUser
SuperUser
June 25, 2025

Which FortiClient version?

AEK
IhabAlBzour
Visitor III
June 29, 2025

I tried two version 7.4.7 and tried old  version 6 but it's same problem

AEK
SuperUser
SuperUser
June 29, 2025

Does it work with IKEv2?

Do you have access to the remote FortiGate so you can debug IPsec?

If so, start by running the following:

diagnose sniffer packet any "host x.x.x.x" 4

Where x.x.x.x is the client public address. The command will show you if you receive IPsec traffic from the client.

If you receive traffic then you can run IKE debug.

diagnose vpn ike log filter rem-addr4 x.x.x.x
diagnose debug application ike -1
diagnose debug application fnbamd -1
diagnose debug console timestamp enable
diagnose debug enable

Hope it helps.

AEK
IhabAlBzour
Visitor III
June 30, 2025

Thx AEK

 

in ikev2 i receive  traffic but the client can't recevie any packet,and i need ikev1 not 2 to enter user and pass from client,and in ikev1 in forticlient there is no phase1 & phase2 in IOS version but in android there is but not work when i config.