Hi All,
I am facing an issue with my IPsec remote VPN split tunnel configuration on FortiGate. When a user connects using FortiClient-VPNonly addition client software, it works fine. However, when the user connects using the FortiClient-ZTNA edition, the default route (0.0.0.0/0) is added to the host machine, forcing all traffic through the VPN, even though split tunneling is configured.
Anyone has any idea?
Hi Adeel
Which FortiClient version?
Its Updated Version v7.4.2.1737
Didn't find such issue in the known issues list.
I already configured split tunnel IPsec for FCT 7.4.0 (licensed edition) and it worked fine.
If you can't try FCT 7.4.0 or 7.4.1 (just to make sure) then I suggest to manually remove the injected gateway while you initiate a ticket with TAC for a sustainable solution.
Fortigate Firewall Version is V7.2.8 Build 1639, and Forticlient-ZTNA edition version is v7.4.2.1737.
Thanks for your kind response. The issue is fixed for me by reinstalling the Forticlient. IDK what's the issue, but it fixed automatically.
User | Count |
---|---|
2570 | |
1362 | |
796 | |
651 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.