Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
iivel
New Contributor

SSLVPN tunnel connection failed (Error=-20105) after SSL_get Error 5, WSAGetLastError 2746

Some of our users are confronted with this problem pretty randomly while trying to establish a SSLVPN connection. Usually, 2nd or 3rd attempt are working.

 

The reference tells noting about error -20105 related to connection problems (other than log upload failed, which is disabled).

I could not find anything related to error code 20105 in this forum so far - any suggestions?

 

A typical log file pattern looks like this:

 

30.03.2021 15:54:14    Error    VPN    FortiSslvpn: 16144: error: poll_recv_ssl -> SSL_get_error(): 5 30.03.2021 15:54:14    Error    VPN    FortiSslvpn: 16144: error: poll_recv_ssl -> WSAGetLastError():2746 30.03.2021 15:58:05    Error    VPN    id=96603 user=SYSTEM@NT-AUTORITÄT msg="SSLVPN tunnel connection failed (Error=-20105)." remotegw=extranet.xxx.xx vpnstate=connected vpntunnel="SSL VPN" vpntype=ssl vpnuser=xxxxx

 

FortiClient 6.0.9 on Windows 10 (2004).

3 REPLIES 3
HarshChavda
Staff
Staff

Can you verify if Forticlient is compatible or try with newer version. Also try increasing idle timeout following this document: https://community.fortinet.com/t5/FortiGate/Technical-Tip-SSL-VPN-connection-logout-after-8-hours/ta...

hostbet
New Contributor

The SSLVPN error -20105 accompanied by SSL_get_error(): 5 and WSAGetLastError(): 2746 typically indicates a failure during the handshake process, which might be due to intermittent network connectivity, firewall restrictions, or software conflicts. Users experiencing this issue should start by checking the stability of their internet connection, as even minor disruptions can lead to such errors.

Next, ensure that any antivirus software or third-party firewalls on the client device are temporarily disabled to rule out interference with the SSLVPN connection. Updating to the latest version of FortiClient is also recommended, as older versions like 6.0.9 might lack critical fixes.

Additionally, review the SSLVPN server settings, ensuring that the encryption protocols and ciphers are compatible with the client's configuration. Enabling detailed logs on both the client and FortiGate can provide valuable insights into the root cause of the issue.

If the problem persists despite these steps, try uninstalling and reinstalling the FortiClient software to resolve any potential configuration issues. For unresolved cases, sharing the detailed logs with Fortinet support may help identify and address the issue effectively.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors