Hi,
We initially thought this was a Webtitan issue, however, when a user is connected to Forticlient VPN, websites that are blocked on Webtitan policies are being allowed to filter through and get accessed. If the user disconnects from VPN, and tries accessing those sites again, they then get blocked from Webtitan.
Has anyone come across this issue before or can provide further details on why this may be happening? We think it may be a configuration issue with our Forticlient setup.
Our VPN is a IP SEC VPN. We have tried several devices (Windows 10 PCs and Windows 11 OS laptops) and the same happens. This has happened for several different users on different Webtitan policies. I can provide further details if needed.
Hi
Is WebTitan DNS based? If so then probably the VPN is injecting a new DNS server IP that has priority over WebTitan's DNS.
Hi - yes it is. Forticlient VPN's DNS is taken priority and we need to know how to lower the priority for Forticlient's VPN DNS.
Hi
You should be able to fix it by enabling split DNS on FortiGate IPsec config.
Hope it helps
User | Count |
---|---|
2546 | |
1354 | |
795 | |
643 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.