Created on
10-01-2023
09:06 PM
Edited on
09-26-2025
05:10 AM
By
Stephen_G
Description | This article describes how to avoid re-authentication when a connected SSL VPN user changes the network, for instance, moving to a different SSID or network. FortiGate and FortiClient hand out an authentication cookie that will be used if the connection drops to reconnect the tunnel. |
Scope | FortiGate, FortiClient. |
Solution |
The following features should be enabled under SSL VPN and portal settings:
conf vpn ssl settings
When the features are enabled, FortiClient will try to reconnect without re-authentication. auto-connect/keep-alive needs to be enabled on the FortiClient side.
Related article: Technical Tip: Configuring SSL-VPN to allow tunnel reconnection without requiring reauthentication |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.