Description | This article discusses the error message 'Your device may not support more than 30 routes' after trying to connect to the FortiClient VPN. |
Scope | FortiGate, FortiClient. |
Solution |
In some cases, the error message may be seen 'Your device may not support more than 30 routes' while using split tunneling.
Symptoms that may be seen with pushing many routes to the client are:
If this is the case try the following suggestions:
As an example, a split tunnel address group has the following networks:
The following addresses can be summarized as:
If SSL VPN is being used check the routing address override under VPN -> SSL VPN Portal -> Routing Address Override. Or, if there is no routing address override check the SSL VPN firewall policy. If IPSec is being used check the split tunneling networks under VPN -> IPSec Tunnels -> Network -> IPv4 split tunnel.
When using a full tunnel the route 0.0.0.0/0 will be pushed to the device's routing table when they connect to the SSL VPN. |