Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
kckong
New Contributor III

MSN disconnect and cannot receive file

Hi, My FGT-60B just upgraded to latest 4.0 MR2 Patch 3 (build 303) firmware. I just found that somehow all msn session in the office will be disconnected. Another problem is, I cannot receive file from msn. I can accept the file, but the download cannot begins, just hang there. The sender said the file already sent out successful on his msn' s session. And the worst is I cannot see any message which the sender sent to me in the same session, behind the file he sent out, as the download does not start at my side. Please refer to the screen dump, I just use the default settings, and I have no idea what is the problem.
9 REPLIES 9
Yngve0
New Contributor II

We have some (similar?) issues with MSN after we started to implement Win7 in the origanisation. Old clients with Win XP work excellent. New clients with Win7 and newest Windows Liv, are frequently disconnected, logon fails (with error 81000494) or chat-dialogs are unsyncrone. I have a theory that this may be related to the newest version of MSN, but have not been able confirm that. Anyone? Y
g3rman
New Contributor

Having the same problem with MSN in the APAC area. Ticket with Fortinet is open. Though we have seen this happen in the past and a firmware upgrade usually fixes it.
A Real World Fortinet Guide Configuration Examples & Frequently Asked Questions http://firewallguru.blogspot.com
A Real World Fortinet Guide Configuration Examples & Frequently Asked Questions http://firewallguru.blogspot.com
kckong
New Contributor III

Hi g3rman, Thanks for the update. Do you know any work around solution? Thanks
g3rman
New Contributor

Remove MSN from the application control list.
A Real World Fortinet Guide Configuration Examples & Frequently Asked Questions http://firewallguru.blogspot.com
A Real World Fortinet Guide Configuration Examples & Frequently Asked Questions http://firewallguru.blogspot.com
kckong
New Contributor III

Hi g3rman, Before update to 4.0 MR2 patch 3, My application control list only have 3 rules:- 1) Block QQ <-- a popular IM in China 2) default rule from fortigate (allow all know application) 3) default rule from fortigate (allow all unknow application) However, after update to 4.0 MR2 patch 3 I found that above setting is not works, MSN cannot login. So I add a rule ' allow MSN' on top of rule 1, then my colleague can login the MSN. PS. I saw a article on this forum, somebody have similar problem, and suggestion to turn off the IPS checking as work around. Now I have turn off the IPS checking on some policies, and looking forward the result.
g3rman
New Contributor

Will let you know what Fortinet says, they' re still investigating.
A Real World Fortinet Guide Configuration Examples & Frequently Asked Questions http://firewallguru.blogspot.com
A Real World Fortinet Guide Configuration Examples & Frequently Asked Questions http://firewallguru.blogspot.com
kckong
New Contributor III

Thanks. Finally I downgrade all my 11 FGT-60B & 100A back to 4.0 MR2 patch 2, as MSN is a very important communication channel in our business field. It is the first time I need to down grade, since I use fortigate for over 7 years
kckong
New Contributor III

Hello, just found that 4.2 MR4 is out, is it include the fix for this MSN issue? In the release notes, I cannot found any information for this issue. Thanks
joru
Contributor

I' m having the same issue with a FG80C with MR2 Patch6, if I disable Application Control the new Messenger works but with AC active even with the explicit rule of allow doesn' t work, the thing is we have configured different permissions and some user should be able to use the MSN messenger and others not. Anyone knows how to solve this issue?
Labels
Top Kudoed Authors