Skip to main content
Aspi
New Member
June 7, 2022
Question

user proxy session goes down often

  • June 7, 2022
  • 2 replies
  • 1494 views

Hi, for some time now the proxy users of a FG201E foritgate have often been disconnected after a short time and then have to be re-authenticated. I verified that I have two types of reports on events. the first tells me user kickout for generation and the second user kickout for scheme mismatch. in attachment I insert the screenshots. could you help me to solve the problem? The fortigate is updated to the latest release. Thanks so mutchimage 1.PNGimage 2.PNG

2 replies

jhussain_FTNT
Staff
Staff
June 8, 2022

Hi,

 

What is the Firmware running on the Fortigate?

 

Also you can test with configuring the auth time out to 24hrs with the below command  and let us known still you are facing the same issue.

 

config User setting
set auth-timeout 1440
set auth-timeout-type hard-timeout

end

 

Regards

Jamal

Debbie_FTNT
Staff & Editor
Staff & Editor
June 9, 2022

Hey Aspi,

 

the 'user kickout for generation' happens if there are for example configuration changes done to proxy settings/policies; this kicks out existing users.

The 'user kickout for scheme mismatch' should happen if for some reason they no longer match into the configured authentication scheme to my knowledge.

What firmwrae version is your FortiGate? If I remember correctly there were one or two known issues about FortiGate removing users from proxy authentication more often than warranted.