Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
FKribs
New Contributor

VPN stuck at status 98%

We are running Windows Server 2012 R2. We have installed the most recent FortiNet client (vpn only), version 5.2.0.0591. We have configured an SSL-VPN connection. When we click on the " connect" button, the status progresses all the way to 98% and then hangs. We have disabled the windows firewall, do not have any anti virus software installed, no group policies are being applied, and no other applications are running when we attempt to make the VPN connection. Thanks for helping!
2 Solutions
denniswong34
New Contributor

Hi All,

 

I just fix it by apply this fix and re-install fortigate client.

https://skydrive.live.com/redir?resid=86BDD34D41D3E179!2065&authkey=!AAeyjPB4O4uVxek

 

You may find the detail from this forums. Hope this could help you all. Thanks.

https://supportforums.cisco.com/discussion/11682811/anyconnect-msi-installation-failed-windows-7

View solution in original post

greylander

Hi,

I seem to be experiencing this problem, or very similar problem. 

 

Forticlient hangs at 98% while connecting.  But this only happen occasionally -- especially if the connect dropped for some reason and I try to connect again (possibly every time this happens).

 

I am able to get Forticlient to connect if I reboot my machine.  So maybe this is not the identical problem discussed here.  Sometimes it gives the "You already have an open SSL VPN connection" warning, but not always. Either way, it stops at 98%, after a minute or so, it just clears the login fields of the forticlient window as if nothing had ever happened.

 

Rebooting my machine "resets" something and makes connection possible.  But this is a frustrating workaround.  

 

Is there a process or service I should be able to restart that would have the same effect as rebooting?

View solution in original post

102 REPLIES 102
neonbit
Valued Contributor

First thing I would check is the even log on the FortiGate (found under: Log & Report > Event Log > VPN). This should give you some clues on what is causing the VPN to fail. You could also test the VPN connection from another computer/network/username to isolate if the problem is on the FortiGate side or the server.
Dushyant
New Contributor

1. Open IE, go to Options -> Connections -> Remove FortiSSL device 2. Go to Control Panel -> Programs and features -> FortiSSL client -> Open, select REPAIR package 3. Open Network connections and you will see new FortiSSL device with icon of vintage phone.
Dushyant
Dushyant
Warren_Olson_FTNT

You may also try going into settings for the connection and check the box " Do not warn invalid server certificate" and see if that pushes you over the hump, let us know.
FKribs
New Contributor

RE: Warren Olson We tried leaving the " do not warn invalid server certificate" unchecked as well as checked and it did not change the problem. RE: Dushyant After the repair, we noticed that in " Network Connections" that the " fortissl" is showing " Unavailable- device missing" . Looking in the properties of " fortissl" network connection on the " general" tab, in the " Connect using:" box it says " Modem Removed- Unavailable device ()" . RE: neonbit We bumped the logging up to " debug" level and saw this error in the logs: 8/1/2014 5:39:39 PM Error VPN FortiSslvpn: 2356: Ras : connection to fortissl failed : 0:0: This might coincide with the " fortssl" connection mentioned above. The FortiNet VPN client successfully connects with Windows 7 but not with Windows Server 2012 R2.
Fullmoon

ORIGINAL: FKribs The FortiNet VPN client successfully connects with Windows 7 but not with Windows Server 2012 R2.
I had similar issue, my work around was instead of using ssl vpn we used forticlient.

Fortigate Newbie

Fortigate Newbie
harald21
Contributor

Hello, we have a similar issue: Working SSLVPN client at Windows 7 / stuck SSLVPN at Windows 8.0 or 8.1 I have a ticket open at FortiSupport and they identified a bug. (hopefully they fix it soon) Sincerely Harald
claumakurumure

use Forticlient 4.3.5 it works 100%
hezvo uko
hezvo uko
Dipen
New Contributor III

Please use an Old version of SSL-VPN client.

Ahead of the Threat. FCNSA v5 / FCNSP v5

Fortigate 1000C / 1000D / 1500D

 

Ahead of the Threat. FCNSA v5 / FCNSP v5 Fortigate 1000C / 1000D / 1500D
FKribs
New Contributor

FortiClient Version 4.3.5.472 has the same issue. It hangs at 98%.
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors