This article describes that if the user cannot RDP into the PC when connected with SSL VPN, but RDP when it is on the same network, and provides troubleshooting steps for this issue.
FortiGate.
diagnose debug disable
diagnose debub flow filter saddr x.x.x.x <----- IP user is getting when connected with SSL VPN.
diagnose debug flow filter daddr x.x.x.x <-----PC IP which user is trying to RDP in.
diagnose debug flow show function-name en
diagnose debug flow trace start 999
diagnose debug en
diagnose sniffer packet any ‘host x.x.x.x and host y.y.y.y’ 4 0 l
Or
diagnose sniffer packet any ‘host x.x.x.x and port 3389’ 4 0 l
Contact TAC if there is still an issue.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.