Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
INT1
New Contributor III

VPN IPSEC bytes received 0

it happened after a windows update i think im not sure about it i tried unistalling the updates but its still not working what can be the issue?

 

Screenshot 2024-12-04 110628.png

21 REPLIES 21
sjoshi
Staff
Staff

Hi,

 

What is the forticlient version.

Can you try reinstalling the FCT

Let us know if this helps.
Salon Raj Joshi
INT1
New Contributor III

hello, 

its the latest version 7.4.1, i unistalled it and installed back again didnt work

 

sjoshi

Is this also affecting your traffic flow via the ssl vpn

Let us know if this helps.
Salon Raj Joshi
INT1
New Contributor III

its only happening on IPSEC VPN, i tried ssl vpn its working normally 

sjoshi

can you collect ike debug while connecting the VPN.

 

diagnose debug console timestamp enable
diagnose vpn ike log-filter dst-addr4 10.10.100.109 ---> 10.10.100.109 is the remote gateway
diagnose debug application ike -1
diagnose debug application fnbamd -1
diagnose debug enable

Note: Starting from FortiOS 7.4.1, the 'diagnose vpn ike log-filter dst-addr4' command has been changed to 'diagnose vpn ike log filter rem-addr4'.

diagnose vpn ike log filter rem-addr4 10.10.100.109
diagnose debug application ike -1
diagnose debug application fnbamd -1
diagnose debug console timestamp enable
diagnose debug enable

diagnose debug disable

Let us know if this helps.
Salon Raj Joshi
INT1
New Contributor III

im not getting anything useful from it 

sjoshi

can you let me know what was the recent windows update?

Is it KB2693643?

Let us know if this helps.
Salon Raj Joshi
INT1
New Contributor III

no i checked and it was't installed on the machine, also i tried to uninstall the latest updates of windows and it still didn't work. what happened is it was working properly up untill 13/11/24 thats the last time that the client used it so i tried to unistall every update from 13 till now.

sjoshi

Can you confirm one thing if NAT-T is enable on the Forticlient configuration.

Open your forticlient and see the Phase1 settings

Let us know if this helps.
Salon Raj Joshi
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors