Description | This article describes the issue that ZTNA access fails on the first attempt when using a wildcard FQDN. |
Scope | FortiGate, FortiClient EMS, FortiClient. |
Solution |
When a user initiates a connection to an endpoint via FortiClient ZTNA (e.g., host1.ztna.clients), access fails with error code 022 – ZTNA Application Not Found on the first attempt when using a wildcard FQDN as ZTNA destination. However, subsequent attempts succeed.
Behavior:
WAD Debug:
"[I]2025-07-02 11:25:37.779493 [p:309][s:33665658][r:100663315] wad_http_req_exec_on_vs_dns_ready :12374 req(0x7f81858048) vs DNS ready: dns_resolved(1), domain_matched(0), addr_matched(0)
This issue has been reported to the development team (Engineering ID: #1184250) and has been resolved in the upcoming FortiOS versions 7.6.5 and 8.0. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.