Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
anarine
New Contributor

Forticlient vpn on mobile fails to connect SAML if MFA is enabled

I use the free forticlient vpn on android phone and saml/sso authentication with azure user works fine.

However if the user has MFA, and after I enter the user's MFA code on the screen, the connection drops. Seems to be an issue with the mobile android client ?

If I enter the code on a Separate device, the connection succeeds. I have tried to set the app to "always on top" but issue persists.

 

4 REPLIES 4
spoojary
Staff
Staff

Try and increase the global remote auth timeout to 300

https://docs.fortinet.com/document/fortiauthenticator/6.5.0/cookbook/306162/increasing-remote-authen...

Siddhanth Poojary
Sgagan
Staff
Staff

Hello,

Could you also mention the FortClient version that you are using on the affected android device?

GD
arahman
Staff
Staff

Hi, can you please also share the screen shot of the error you are seeing, also here is an article worth checking

https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Android-device-SSL-VPN-Connection-Fa... 

anarine
New Contributor

Yes the global remoteauthtimeout setting is set to 300. 

Everything works fine on fortivpn client on my windows pc.
 
On Android phone forticlient 7.4.0.0171-
SSLVPN saml MFA works fine. But IKE2 saml MFA fails whenever the code is entered on the Same android phone client. There is No error message. It's like the forticlient forgets it needs to connect after successful authentication. 
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors