| Description | This article describes the scenario where a working stops working and an RST response packet can be seen on the FortiGate. |
| Scope | FortiGate, FortiOS, SSL VPN. |
| Solution |
SSL VPN configured is fully functional. However, it stops working without any SSL VPN config changes.
config vpn ssl settings
On the FortiGate, incoming traffic can be seen with a response as RST, not letting TCP 3-way handshake established.
Internet in 172.16.10.3.51308 -> 192.168.10.1.10443: syn 3088753788 Internet out 192.168.10.1.10443 -> 172.16.10.3.51308 : rst 3088753789
A VIP is added on the same destination port as SSL VPN, stopping it from working as before.
config firewall vip
To fix this:
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.