Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
s3
New Contributor

IPsec with SAML - stablity

I have implemented IPsec with SAML on a fortigate and can connect fine to it from some machines but other machines are incredibly unstable. The forticlient (vpn only 7.4.3) will connect, the application will be unresponsive for a few seconds and then will say connected however no packets will flow.

 

What is the best version of FortiClient to use with IPsec/SAML for stability? Also is there a way to download older versions?

1 Solution
atakannatak
Contributor II

Hi @s3 ,

 

FortiClient version 7.4.3 includes a known issue that appears to align with your situation, listed under BUG ID 1102421. You can find more details in the official release notes at the link below:

 

https://docs.fortinet.com/document/forticlient/7.4.3/windows-release-notes/573433/new-known-issues

 

Similar issues have been reported under BUG ID 1051036 and 1089023 in both FortiClient versions 7.2.8, 7.2.7, and 7.2.6. I believe this could be contributing to the problem you’re currently experiencing.

 

Based on my research, I haven’t found any known issues in FortiClient version 7.2.9 that appear to match your current situation. However, it's important to note that this doesn’t guarantee the absence of issues—some problems that are visible in version 7.4.3 may still manifest differently or remain undocumented in version 7.2.9.

 

https://docs.fortinet.com/document/fortigate/7.2.9/fortios-release-notes/236526/known-issues

 

While Fortinet hosts different versions on the public site and this procedure requires a valid support account.

 

  1. Go to: https://support.fortinet.com
  2. Navigate: Download > Firmware Images > FortiClient

 

BR.

 

If my answer provided a solution for you, please mark the reply as solved it so that others can get it easily while searching for similar scenarios.

 

CCIE #68781

Atakan Atak

View solution in original post

Atakan Atak
5 REPLIES 5
Jean-Philippe_P
Moderator
Moderator

Hello s3, 

 

Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible. 

 

Thanks, 

Jean-Philippe - Fortinet Community Team
Jean-Philippe_P
Moderator
Moderator

Hello,

 

We are still looking for an answer to your question.

 

We will come back to you ASAP.

 

Thanks,

Jean-Philippe - Fortinet Community Team
Jean-Philippe_P
Moderator
Moderator

Hello s3,

 

I found this solution, can you tell me if it helps you?

 

For IPsec with SAML authentication, the recommended version of FortiClient is 7.2.9 or later, as support for Electron as the internal browser framework for IPsec SAML authentication is included from this version onwards. This feature is already available in FortiClient 7.4.1 and later. To ensure stability, consider upgrading to FortiClient 7.2.9 or a later version that supports Electron for SAML authentication. Regarding downloading older versions of FortiClient, you can typically find them on the Fortinet Support Portal.

 

However, it is generally recommended to use the latest stable version that supports the features you need for improved security and stability.

Jean-Philippe - Fortinet Community Team
atakannatak
Contributor II

Hi @s3 ,

 

FortiClient version 7.4.3 includes a known issue that appears to align with your situation, listed under BUG ID 1102421. You can find more details in the official release notes at the link below:

 

https://docs.fortinet.com/document/forticlient/7.4.3/windows-release-notes/573433/new-known-issues

 

Similar issues have been reported under BUG ID 1051036 and 1089023 in both FortiClient versions 7.2.8, 7.2.7, and 7.2.6. I believe this could be contributing to the problem you’re currently experiencing.

 

Based on my research, I haven’t found any known issues in FortiClient version 7.2.9 that appear to match your current situation. However, it's important to note that this doesn’t guarantee the absence of issues—some problems that are visible in version 7.4.3 may still manifest differently or remain undocumented in version 7.2.9.

 

https://docs.fortinet.com/document/fortigate/7.2.9/fortios-release-notes/236526/known-issues

 

While Fortinet hosts different versions on the public site and this procedure requires a valid support account.

 

  1. Go to: https://support.fortinet.com
  2. Navigate: Download > Firmware Images > FortiClient

 

BR.

 

If my answer provided a solution for you, please mark the reply as solved it so that others can get it easily while searching for similar scenarios.

 

CCIE #68781

Atakan Atak
Atakan Atak
s3
New Contributor

Thanks initial test v7.2.9 seems more stable.

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors