- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
SSL VPN Drops on Video calling, no split tunnel, on VDOM, FW-v7.0.12
We are seeing a strange issue on SSL VPN configured on VDOM, SSL VPN drops within 5 min of call whenever we enable Video calling (irrespective of any App, like MS Team, Zoom, WhatsApp etc...). This only happens to VDOM on root VDOM it works seamlessly. Any help....
- Labels:
-
FortiGate
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Are you using any UTM in the firewall policy? If yes, have you tried to do a test by disabling them?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
No UTM enabled, it's only SSL with "no-inspection" for SSL VPN Policy. When the traffic goes out to internet it's again only SSL but it's "certificate-inspection".
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Have you configured any traffic shaper policy?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
No traffic shaper policy.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi @atique_ahmed.,
Can you try to disable NPU offloading and test again. Please refer to this document for more information "https://community.fortinet.com/t5/FortiGate/Technical-Tip-FortiGate-Disable-Hardware-Acceleration/ta...
Regards,
Minh
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Minh,
The URL you have mention is not opening & it gives the "An invalid set of parameters has been specified in the url".
I am not sure what's the command to disable NPU offloading but I tried this below command.
set npu-offload disable
Looks like it's not available for SSL VPN.
Thanks, Atiq.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello,
This is the URL : https://community.fortinet.com/t5/FortiGate/Technical-Tip-FortiGate-Disable-Hardware-Acceleration/ta...
Regards.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
This command "set npu-offload" is not available for SSL VPN.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
any help please.