- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
ForitiClient Status stop at 48%
Hi Guys,
I Have a problem with SSLVPN.
After upgrade Forti OS 7.0.14 and FortiEMS 7.0.11, then i try VPN and successfully,
someday later I try again and their status stop at 48% with warning "Credential or SSLVPN configuration is wrong (-7200)".
I haven't change anything in Firewall or Policy.
Anyone has any idea about this issues.
- Labels:
-
FortiClient
-
FortiClient EMS
-
FortiGate
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I suggest running the sslvpn debug in the FortiGate while you connect to the VPN to check why the connection fails.
diag debug reset
diag vpn ssl debug-filter src-addr4 <public-ip-client>
diag deb app sslvpn -1
diag deb console timestamp enable
diag deb enable
To troubleshoot common issues of SSLVPN, you may refer to this link:
https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-SSL-VPN-Troubleshooting/ta-p/189542
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Additionally to above debug add :
diag debug app fnbamd -1
Share the output here so we can find what is wrong.
If you have found a solution, please like and accept it to make it easily accessible for others.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Additionally you may also check FG VPN events under Log & Report.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello,
Have you tried multiple user credentials on the same computer having an issue with FCT?
Does the issue occur for local users as well?
The KB below can help you what to check for each of the percentage stuck :
48%.
Negotiation stops at this percentage if there is an issue with two-factor authentication.
https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Possible-reasons-for-FortiClient-SSL...
Kind regards,
![](/skins/images/EC9FF2F7BE06D4243426EA19DD2C8052/responsive_peak/images/icon_anonymous_message.png)