Skip to main content
kotheram
New Member
December 20, 2019
Solved

IPv6 on SSL client tunnel

  • December 20, 2019
  • 2 replies
  • 27402 views

Hi,

I am having trouble setting up IPv6 on Windows 10 SSL tunnel with FortiClient VPN app.

 

I have configured IPv6 address group to be assigned to users, enabled IPv6 on SSL-VPN portal, checked that IPv6 is enabled on Windows PPP interface, ... but my computer still get only IPv4 address.

 

Have anybody successfuly configured and used IPv6 on SSL VPN through Forticlient VPN app?

 

So far I have found this post http://socpuppet.blogspot.com/2013/09/sslvpn-forticlient-ipv6.html which has not been resolved and some known issues with IPv6 on full Forticlient https://docs.fortinet.com/document/forticlient/6.2.0/windows-release-notes/991883/known-issues.

 

Thanks

Best answer by FlavioB

FOS 7.0.0 is supporting dual-stack SSLVPN. Check the release notes.

2 replies

ispcolohost
New Member
March 20, 2020

Any chance you figured this out?  Trying to do dual stack with 6in4 via Forticlient.

kotheram
kotheramAuthor
New Member
March 20, 2020

Actualy a I opened a support ticket a day ago.

I will post resolution here as soon as I have one.

ispcolohost
New Member
March 20, 2020

I had one, they're suggesting what I'm attempting to do is not something you can achieve with both 1) an external user, and 2) lack of EMS license.  This instance has users are defined on the fortigate but auth'd via radius, and I'm just attempting with standard 6.0 or 6.2 client unlicensed, i.e. vpn-only.  I of course can't find any docs on Fortinet's site that confirm or deny this suggestion; they have nothing on their site about setting up dual stack Forticlient, or anything that suggests it is actually capable of 6in4 tunnels.  I can get either a v6 or a v4 address depending on which protocol I connect over, but then the other protocol is free to split tunnel even though I have those options disabled in my SSL VPN definition.  Kind of a mess.

emnoc
New Member
May 18, 2020

No, ipv6 and ipv4 with a client connecting with ipv6 is not doable. NFR has been submitted awhile back on this one .

 

 

Ken Felix

 

FlavioB
FlavioBAnswer
New Member
July 9, 2021

FOS 7.0.0 is supporting dual-stack SSLVPN. Check the release notes.