affected one user, he change laptop, after connect to vpn he will disconnect every 30sec
[177:root:0]SND: IPCP Configure_Request id(1) [IP_Address 182.23.148.110] [177:root:0]RCV: IPCP Configure_Request id(0) [IP_Address 0.0.0.0] [Primary_DNS_IP_Address 0.0.0.0] [Secondary_DNS_IP_Address 0.0.0.0] [177:root:0]ipcp: returning Configure-NAK [177:root:0]SND: IPCP Configure_Nak id(0) [IP_Address 172.30.132.100] [Primary_DNS_IP_Address 172.30.112.20] [Secondary_DNS_IP_Address 8.8.8.8] [177:root:0]RCV: IPCP Configure_Ack id(1) [IP_Address 182.23.148.110] [177:root:0]RCV: IPCP Configure_Request id(1) [IP_Address 172.30.132.100] [Primary_DNS_IP_Address 172.30.112.20] [Secondary_DNS_IP_Address 8.8.8.8] [177:root:0]ipcp: returning Configure-ACK [177:root:0]SND: IPCP Configure_Ack id(1) [IP_Address 172.30.132.100] [Primary_DNS_IP_Address 172.30.112.20] [Secondary_DNS_IP_Address 8.8.8.8] [177:root:0]ipcp: up ppp:0x55ee9000 caller:0x55eb0980 tun:63 [177:root:0]Cannot determine ethernet address for proxy ARP [177:root:0]local IP address 182.23.148.110 [177:root:0]remote IP address 172.30.132.100 [177:root:3d7f]sslvpn_ppp_associate_fd_to_ipaddr:280 associate 172.30.132.100 to tun (ssl.root:63) [176:root:3d85]sslvpn_read_request_common,643, ret=-1 error=-1, sconn=0x55dcb180. [176:root:3d85]Destroy sconn 0x55dcb180, connSize=10. (root) [178:root:3d80]sslvpn_read_request_common,643, ret=-1 error=-1, sconn=0x55d55780. [178:root:3d80]Destroy sconn 0x55d55780, connSize=8. (root) [176:root:3d76]epollFdHandler,577, sconn=0x55dca380[64,69,-1,-1,-1], fd=64, event=25. [176:root:3d76]epollFdHandler:647 s: 0x55dca380 event: 0x19 [176:root:3d76]Destroy sconn 0x55dca380, connSize=9. (root) [176:root:3d76]sslvpn_release_apsession:1607 free app session, idx[86] [176:root:3d76]tunnelStateCleanup:789 0x55dca380::0x55eeb000 [176:root:0]ipcp: down ppp:0x55ffc000 caller:0x55dca380 tun:69 [176:root:3d76]sslvpn_ppp_deassociate_fd_to_ipaddr:317 deassociate 172.30.132.136 to tun (ssl.root:69) [176:root:3d76]session removed s: 0x55dca380 (root) [176:root:3d76]deconstruct_session_id:380 decode session id ok, user=[wilson.lim],group=[System],authserver=[PISG-Radius],portal=[System],host=[183.90.36.106],realm=[],idx=25,auth=2,sid=2416ecaa, login=1634011946, access=1634011946 [176:root:0]sslvpn_internal_remove_one_web_session:2786 web session (root:wilson.lim:System:183.90.36.106:25 1) removed for Lost the connection [176:root:3d7f]epollFdHandler,577, sconn=0x55dcaa80[67,70,-1,-1,-1], fd=67, event=25. [176:root:3d7f]epollFdHandler:647 s: 0x55dcaa80 event: 0x19 [176:root:3d7f]Destroy sconn 0x55dcaa80, connSize=8. (root) [176:root:3d7f]sslvpn_release_apsession:1607 free app session, idx[79] [176:root:3d7f]tunnelStateCleanup:789 0x55dcaa80::0x55f52000 [176:root:0]ipcp: down ppp:0x55f4d000 caller:0x55dcaa80 tun:70 [176:root:3d7f]sslvpn_ppp_deassociate_fd_to_ipaddr:317 deassociate 172.30.132.129 to tun (ssl.root:70) [176:root:3d7f]session removed s: 0x55dcaa80 (root) [176:root:3d7f]deconstruct_session_id:380 decode session id ok, user=[wilson.lim],group=[System],authserver=[PISG-Radius],portal=[System],host=[183.90.36.106],realm=[],idx=18,auth=2,sid=47ba3a4c, login=1634012128, access=1634012128 [176:root:0]sslvpn_internal_remove_one_web_session:2786 web session (root:wilson.lim:System:183.90.36.106:18 1) removed for Lost the connection
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi,
Is it affecting all the users or a single user?
If all the users, then try this setting and then check:
config vpn ssl settings
set route-source-interface enable
end
Please refer to this link:
https://community.fortinet.com/t5/FortiGate/Technical-Tip-SSL-VPN-disconnection-issues-when-connecte....
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1705 | |
1093 | |
752 | |
446 | |
230 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.