FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
lestopace
Staff
Staff
Description

This article describes how to fix the problem wherein Windows 7 users encounter the FortiClient message 'The server you want to connect to requests identification, please choose a certificate and try again.(-5)' when connecting to SSLVPN.

Scope FortiGate.
Solution

 

Problem.

 

lestopace_0-1649574397262.png

 

In this example, the FortiGate was using 8192 DH Params on its settings:

 

lestopace_1-1649574785124.png

 

Solution.

 

# config sys global

       unset dh-params

   end

 

Unsetting DH-params will revert its value to the default one which is 2048. 

 

Results.

 

lestopace_3-1649575162030.png

 

lestopace_2-1649575072033.png

 

PS: Note however that this article is one of the possibilities in relation to this error as it could also mean other things and points to other problems.

Contributors