FortiClient
FortiClient proactively defends against advanced attacks. Its tight integration with the Security Fabric enables policy-based automation to contain threats and control outbreaks. FortiClient is compatible with Fabric-Ready partners to further strengthen enterprises’ security posture.
mattchow_FTNT
Article Id 190260

Description


This article describes a limitation on SSL VPN MAC address checks before and after v6.2.

 

Scope

 

FortiClient 6.2 and other versions.

Solution

 

Free FortiClient before v6.2.

 

SSLVPN MAC address check is available before v6.2, but it is not applied to mobile units such as the iPhone with iOS platform or Android OS.

Free FortiClient after version v6.2 until FortiClient v7.0.2 version


SSL VPN MAC address check is not available anymore; if enabled in the SSLVPN setting, the authentication will fail all the time.

In the free FortiClient v7.0.3 onward, the MAC address host check feature is available.

 

Related articles:

Technical Tip: MAC Address check on SSL VPN connections

Technical Tip: SSL VPN client MAC binding supported platforms