Skip to main content
gurdit
New Member
January 30, 2025
Question

Issues with FortiClient Connectivity

  • January 30, 2025
  • 3 replies
  • 1368 views

Hi,

We are experiencing issues with FortiClient. Some of our staff are connected, but they cannot access the remote local IP addresses, which prevents them from connecting to the RDP servers.

I had a call with a FortiGate technician yesterday, and he advised that there is no configuration issue with FortiGate; it is configured correctly. The problem seems to be with FortiClient, which is not passing traffic from the local computer.

I've noticed that this issue occurs mainly with staff using Windows 11. It does not happen consistently—some staff members can connect to the RDP servers, but then suddenly lose access. After a few minutes, the connection may start working again.

I will appreciate if anyone can advise on this.

3 replies

haegi75
Explorer
January 31, 2025

Hello gurdit,

what is in the routing table on the client while the client is connected to the VPN? Do you use split tunneling? Can the users ping the server?

gurdit
gurditAuthor
New Member
January 31, 2025

Hi Haegi,

Thank you for your response.

The routing table shows the correct route, but it's unusual that only 3-4 users are experiencing issues communicating with the remote server. Interestingly, this problem seems to resolve itself suddenly. We do not have a split tunnel in place, and users are unable to ping the server. I've noticed that this issue pertains specifically to Windows 11 systems.

I can ping the IP address assigned to the end user from the vpn, but the VPN client is unable to ping the remote interface. It appears to be a one-sided communication issue that is not consistent—sometimes it works and sometimes it doesn’t.

I’m confused by this situation, and I have opened a ticket with Fortigate. They indicated that the issue is related to the VPN client, and I am currently waiting for their response.

 

gurdit
gurditAuthor
New Member
February 6, 2025

I have observed that when FortiClient connects, it creates a route that chooses the local interface as the gateway instead of the interface created by the VPN. Although it sends one or two packets through the VPN interface, the remote access only works during that brief moment. Approximately 98% of the time, it defaults to the local interface to connect to the remote LAN. I tested the same laptop with Windows 11 (version 24H2) and encountered this issue, but when I installed Windows 10 on the same laptop, it worked perfectly without any problems.

 

gurdit
gurditAuthor
New Member
February 6, 2025

Does anyone have any advice on this