Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
tolgainci
New Contributor II

Unable to connect Forticlient VPN

Hello,

 

We are based in Turkey, and a user in Kazakistan is unable to connect to VPN. Other users in Turkey and other countries such as Thailand are able to connect with the same username and password. The exact error we get is "Unable to establish the vpn connection. the vpn server may be unreachable. (-5010)" I couldn't find anything on error 5010.

 

We tried connecting via cellphone, connecting from a public internet but the error is still the same. Then we formatted the computer, it's still the same. I will be glad if someone can help. Thanks in advance.

10 REPLIES 10
dingjerry_FTNT

Hi @tolgainci ,

 

1) Get the client's public IP x.x.x.x;

2) On FGT, run:

 

diag sniffer packet any 'host x.x.x.x and port 10443' 4

 

3) Then ask the client to reproduce this issue.

 

This is to confirm that at least the traffic to port 10443 from Kazakhstan will hit FGT at port 10443.

 

4) If you do see traffic hitting FGT at port 10443, ask the client to stop.

 

5) Run the following commands:

 

diag debug flow show iprope enable

diag debug flow filter addr x.x.x.x

diag debug flow filter port 10443

diag debug flow trace start 1000

diag debug enable

 

Then reproduce the issue again.

Regards,

Jerry
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors