Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
volkovski
New Contributor III

Forticlient 5.4 stuck at 40% when connecting

Hello all,

I have trouble with FC 5.4.0.0780 on Win 7. When I'm trying to connect to FG I'm getting the following warning, and it stuck at 40% :

"Unable to establish the VPN connection. The VPN server may be unreachable. (-5)"

 

Does anyone have the similar issue ?

 

Thank you in advance.

1 Solution
Semizen
New Contributor

I had this after a Firmware-Update 5.2.2->5.4.0

On the Client in IE / Options / Advanced

   Turn on TLS 1.2 and TLS 1.3

View solution in original post

5 REPLIES 5
kolawale_FTNT

What is your FortiOS version?

 

It seems there is a problem establishing SSL VPN connection to the latest FortiOS 5.4 Beta after the FortiGate has been running for a while.

ByterunnerHome

Hi, I have the same issues... Use you WPAD or automatic proxy settings (dhcp option 252)? And your IE is automatic proxy detection? I must turn off the IE automatic proxy detection at lansettings of IE. After it the user can connect the vpn. And after connect can you turn on the detection again, to go out to the public side... Byterunner
Semizen
New Contributor

I had this after a Firmware-Update 5.2.2->5.4.0

On the Client in IE / Options / Advanced

   Turn on TLS 1.2 and TLS 1.3

lunhas2k4
New Contributor III

Hi guys,

 

@Semizen, the solution worked wonders for me. How did you get to that solution.

 

Semizen wrote:

I had this after a Firmware-Update 5.2.2->5.4.0

On the Client in IE / Options / Advanced

   Turn on TLS 1.2 and TLS 1.3

 

 

Carlitos loves firewalls

NSE4 (5.4,6.0)

NSE5 (Fortimanager 6.0, Fortianalyzer 6.0)

NSE7 (Enterprise Firewall 6.0)

Carlitos loves firewalls NSE4 (5.4,6.0) NSE5 (Fortimanager 6.0, Fortianalyzer 6.0) NSE7 (Enterprise Firewall 6.0)
dphills

I am having the same issue.  We have figured out that if we go into our internet options and click on the advance tab to reset the browser, we can then login via the FortiClient.  However, we have to do this quite often.  Does anyone know why the FortiClient is tied into Internet Explorer and how it can be bypassed?  

 

TLS is already enabled.  It looks like any change you make in the advance tab will allow the FortiClient to connect.  It really makes no since.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors