Hello, my FortiGate 2000E is not letting a FortiClient connect today (worked yesterday)
I put the FG into debug mode, got this when the user failed:
Destroy sconn 0x7f7dd367d800, connSize=2. (root) SSL_accept failed, 5:(null) Destroy sconn 0x7f7dd3551400, connSize=3. (root)
What do I do to fix this? LG
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi,
If I remember correctly(!), Windows checks internet connectivity by trying to resolve the domain "www.msftncsi.com" and then trying to open http://www.msftncsi.com/ncsi.txt . The expected result is a plain text saying "Microsoft NCSI".
Please check if your clients have the ability to resolve and open this. If not, then troubleshoot the individual elements of the chain. (DNS resolution and potentially DNS filtering, routing (split? full?), any sort of web-filtering applied?, firewall policy allowing this, etc.)
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1634 | |
1063 | |
751 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.