Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
SteveJW
Contributor

Issues during and after the Forticlient EMS 7.4.5 upgrade

Two to three months ago, we migrated to the EMS Forticlient VMware appliance 7.4.4.
Today, I tested the upgrade from 7.4.4 to 7.4.5 via the GUI. I tested two times with the same result.
See the log below:
Log7.4.5.jpg

As you can see, I started the upgrade around 3:54 PM.
The upgrade apparently finished about 30 minutes later, 4:24 PM, but I got stuck at 50% and suddenly saw a client and network error.
EMS7.4.5Upgrade.jpg
I logged in to the EMS console via a different workstation and received the message that the EMS Ugrade completed!

Only after refreshing the browser with the 50% message, did I get the message "EMS upgrade complete!"

I don't see any errors in the logs, so I assume the upgrade most likely completed successfully.
The (7.4.4) Forticlient on the Windows 11 workstations didn't generate any errors and could also establish an SSL VPN connection. I could also create a FortiClient installer in the EMS console

1) Any idea why the upgrade dialog box is stuck at 50%?
2) And I'm missing the SSLVPN option in the screenshot below.
SSLVPN.jpg

1 Solution
vpolovnikov

It's no longer there. Reference of SSLVPN as a troubleshooting option has been removed from documentation as it's not supported. You can verify by opening the same doc you have referred to. 

VP

View solution in original post

8 REPLIES 8
vpolovnikov
Staff & Editor
Staff & Editor

Hello, SteveJW!

Is SSLVPN feature enabled on your EMS? You can check that under System Settings > Feature Select: Feature Select | FortiClient 7.4.5 | Fortinet Document Library

As for the upgrade, you can check the EMS dashboard and verify current EMS version. I assume the browser session might've gotten expired, hence, it seemed stuck at 50% and returned to normal after refreshing.

VP
SteveJW

Hi vpolovnikov,
The SSLVPN feature is always enabled.
SSLVPN1.jpg
Unchecking/saving, and then checking again, didn't solve the problem.

vpolovnikov

The troubleshooting tool is only available for FOS 7.6.4+ which doesn't support SSLVPN, hence, you are not seeing SSLVPN as a troubleshooting option. I'm verifying with the documentation team to update our documentation.764.png

VP
SteveJW

I performed the upgrade in my test environment.
I don't have Fortigate in my test environment. (In our production environment we do have fortigates. FGT-100 version 7.2.7M)
If this troubleshooting tool is only intended for FOS 7.6.4+, which doesn't support SSLVPN, why do I see an SSLVPN option in the article below?
https://docs.fortinet.com/document/forticlient/7.4.0/new-features/194635/improve-ztna-and-vpn-troubl...

vpolovnikov

It's no longer there. Reference of SSLVPN as a troubleshooting option has been removed from documentation as it's not supported. You can verify by opening the same doc you have referred to. 

VP
mhe
Contributor II

I did the same upgrade (virtual appliance), and since then, ACME certificate renewal no longer works. Does it work for you?

Deepsys
New Contributor

No, this is a know bug, ACME certificate renewal does not work.

I have opened a ticket, workaround is 

"for this is to request a new certificate by redoing the ACME process from the start."

 

But even this doesn't work for us, ticket stil open

ede_pfau
SuperUser
SuperUser

Just have completed the same update, from v7.4.3 to v7.4.5. Screen stuck at 50%.

After refreshing the browser (here: FF) via F5, the screen changed to "Completed!" and all was fine.

I guess it's the same as with FGT updates, at some point the Java scripts in the browser cache need to be reloaded.

 

(As I get paid by the hour, I didn't tell the customer and went getting groceries first.)

Ede Kernel panic: Aiee, killing interrupt handler!
Ede Kernel panic: Aiee, killing interrupt handler!
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors