We have been told by Fortinet support that they will no longer support IKE1 in Forticlient 7.4.4 and greater. IKE2 does not support the X-auth functionality and so will not support RADIUS or LDAPS sources. If you use LdapS or RADIUS for your MFA to authenticate VPN users, this functionality could break your VPN logins or MFA and Fortinet will no longer provide you with support.
that would be a huge upset since ikev2 doesnt offer some of the things that only work in ikev1
i will wait for the official release notes to start crying then
Hello @Tom15
Forticlient 7.4.3+ is supports both LDAP & Radius with Ikv2, you need to utilize the EAP method to select the auth,
Doc ref :
For Radius :
How to select the auth method : https://docs.fortinet.com/document/forticlient/7.4.0/new-features/907253/eap-ttls-support-for-ipsec-...
Thanks
User | Count |
---|---|
2567 | |
1358 | |
796 | |
650 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.