FortiClient
FortiClient proactively defends against advanced attacks. Its tight integration with the Security Fabric enables policy-based automation to contain threats and control outbreaks. FortiClient is compatible with Fabric-Ready partners to further strengthen enterprises’ security posture.
mattchow_FTNT
Article Id 190260

Description


This article describes a limitation on SSL VPN MAC address checks before and after FortiClient 6.2.

 

Scope

 

FortiClient 6.2 and other versions.

Solution

 

Free FortiClient before version 6.2.

 

SSLVPN MAC address check is available before version 6.2, but it is not applied to mobile units such as the iPhone with iOS platform or android OS.

Free FortiClient after version 6.2 until FortiClient 7.0.2 version


SSLVPN MAC address check is not available anymore, if enabled in SSLVPN setting, the authentication will be failed all the time.

In the free FortiClient version 7.0.3 onward, the MAC address host check feature is available. See Technical Tip: MAC Address check on SSL VPN connections.