Skip to main content
s3Raytheon
New Member
April 10, 2025
Solved

IPsec with SAML - stablity

  • April 10, 2025
  • 5 replies
  • 2425 views

I have implemented IPsec with SAML on a fortigate and can connect fine to it from some machines but other machines are incredibly unstable. The forticlient (vpn only 7.4.3) will connect, the application will be unresponsive for a few seconds and then will say connected however no packets will flow.

 

What is the best version of FortiClient to use with IPsec/SAML for stability? Also is there a way to download older versions?

Best answer by atakannatak

Hi @s3Raytheon ,

 

FortiClient version 7.4.3 includes a known issue that appears to align with your situation, listed under BUG ID 1102421. You can find more details in the official release notes at the link below:

 

https://docs.fortinet.com/document/forticlient/7.4.3/windows-release-notes/573433/new-known-issues

 

Similar issues have been reported under BUG ID 1051036 and 1089023 in both FortiClient versions 7.2.8, 7.2.7, and 7.2.6. I believe this could be contributing to the problem you’re currently experiencing.

 

Based on my research, I haven’t found any known issues in FortiClient version 7.2.9 that appear to match your current situation. However, it's important to note that this doesn’t guarantee the absence of issues—some problems that are visible in version 7.4.3 may still manifest differently or remain undocumented in version 7.2.9.

 

https://docs.fortinet.com/document/fortigate/7.2.9/fortios-release-notes/236526/known-issues

 

While Fortinet hosts different versions on the public site and this procedure requires a valid support account.

 

  1. Go to: https://support.fortinet.com
  2. Navigate: Download > Firmware Images > FortiClient

 

BR.

 

If my answer provided a solution for you, please mark the reply as solved it so that others can get it easily while searching for similar scenarios.

 

CCIE #68781

5 replies

Jean-Philippe_P
Staff & Editor
Staff & Editor
April 14, 2025

Hello s3, 

 

Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible. 

 

Thanks, 

Jean-Philippe - Fortinet Community Team
Jean-Philippe_P
Staff & Editor
Staff & Editor
April 15, 2025

Hello,

 

We are still looking for an answer to your question.

 

We will come back to you ASAP.

 

Thanks,

Jean-Philippe - Fortinet Community Team
Jean-Philippe_P
Staff & Editor
Staff & Editor
April 16, 2025

Hello s3,

 

I found this solution, can you tell me if it helps you?

 

For IPsec with SAML authentication, the recommended version of FortiClient is 7.2.9 or later, as support for Electron as the internal browser framework for IPsec SAML authentication is included from this version onwards. This feature is already available in FortiClient 7.4.1 and later. To ensure stability, consider upgrading to FortiClient 7.2.9 or a later version that supports Electron for SAML authentication. Regarding downloading older versions of FortiClient, you can typically find them on the Fortinet Support Portal.

 

However, it is generally recommended to use the latest stable version that supports the features you need for improved security and stability.

Jean-Philippe - Fortinet Community Team
atakannatak
Explorer
April 16, 2025

Hi @s3Raytheon ,

 

FortiClient version 7.4.3 includes a known issue that appears to align with your situation, listed under BUG ID 1102421. You can find more details in the official release notes at the link below:

 

https://docs.fortinet.com/document/forticlient/7.4.3/windows-release-notes/573433/new-known-issues

 

Similar issues have been reported under BUG ID 1051036 and 1089023 in both FortiClient versions 7.2.8, 7.2.7, and 7.2.6. I believe this could be contributing to the problem you’re currently experiencing.

 

Based on my research, I haven’t found any known issues in FortiClient version 7.2.9 that appear to match your current situation. However, it's important to note that this doesn’t guarantee the absence of issues—some problems that are visible in version 7.4.3 may still manifest differently or remain undocumented in version 7.2.9.

 

https://docs.fortinet.com/document/fortigate/7.2.9/fortios-release-notes/236526/known-issues

 

While Fortinet hosts different versions on the public site and this procedure requires a valid support account.

 

  1. Go to: https://support.fortinet.com
  2. Navigate: Download > Firmware Images > FortiClient

 

BR.

 

If my answer provided a solution for you, please mark the reply as solved it so that others can get it easily while searching for similar scenarios.

 

CCIE #68781

s3Raytheon
New Member
April 17, 2025

Thanks initial test v7.2.9 seems more stable.

Ryctas
New Member
September 18, 2025

Hello, I just wanted to follow up. Has version 7.2.9 been reliable since April? 

 

Kind of stuck hunting for the right version myself :)