Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
fabs
New Contributor III

cannot longer connect FortiClientVPN 7.2.2.0116 Azure SAML MFA

Hello,

 

since updating iPhone iOS from the last version 16 to the current 17.0.1, connecting via FortiClientVPN is no longer possible. The Azure SAML authentication takes place, but it stops at "Connection".
FortiClient VPN 7.2.2.0116
Fortigate 7.2.5 build1517
Can anyone here report the same problem?

61 REPLIES 61
fabs
New Contributor III

Hi all,

I must revise the first statement. It does not work even with iOS 16.
This has been the case since Friday. With Windows 10 and Android the connection works.
Is there a way to log the iOS connections?

Oak6t
New Contributor

I am having the same issue. It is specific to the FortinetClient version 7.2.2.0116.

fabs
New Contributor III

Hi
yes it looks like an issue with 7.2.2.0116

2023-09-25 13:47:56 [299:root:24]allocSSLConn:310 sconn 0x7f7de3de00 (0:root)
2023-09-25 13:47:56 [299:root:24]DTLS established: DTLSv1 ECDHE-RSA-AES256-GCM-SHA384 from 109.43.179.41
2023-09-25 13:47:57 [301:root:21]SSL state:warning close notify (109.43.179.41)
2023-09-25 13:47:57 [301:root:21]sslConnGotoNextState:311 error (last state: 1, closeOp: 0)
2023-09-25 13:47:57 [301:root:21]Destroy sconn 0x7f7d1c2800, connSize=0. (root)
2023-09-25 13:47:57 [301:root:21]SSL state:warning close notify (109.43.179.41)
2023-09-25 13:47:57 [300:root:22]SSL state:warning close notify (109.43.179.41)
2023-09-25 13:47:57 [300:root:22]sslConnGotoNextState:311 error (last state: 1, closeOp: 0)
2023-09-25 13:47:57 [300:root:22]Destroy sconn 0x7f7d154000, connSize=0. (root)
2023-09-25 13:47:57 [300:root:22]SSL state:warning close notify (109.43.179.41)
2023-09-25 13:47:57 [302:root:21]SSL state:warning close notify (109.43.179.41)
2023-09-25 13:47:57 [302:root:21]sslConnGotoNextState:311 error (last state: 1, closeOp: 0)
2023-09-25 13:47:57 [302:root:21]Destroy sconn 0x7f7d154000, connSize=0. (root)
2023-09-25 13:47:57 [302:root:21]SSL state:warning close notify (109.43.179.41)
2023-09-25 13:47:57 [296:root:20]SSL state:warning close notify (109.43.179.41)
2023-09-25 13:47:57 [296:root:20]sslConnGotoNextState:311 error (last state: 1, closeOp: 0)
2023-09-25 13:47:57 [296:root:20]Destroy sconn 0x7f7d15a000, connSize=0. (root)
2023-09-25 13:47:57 [296:root:20]SSL state:warning close notify (109.43.179.41)
2023-09-25 13:47:57 [297:root:21]SSL state:warning close notify (109.43.179.41)
2023-09-25 13:47:57 [297:root:21]sslConnGotoNextState:311 error (last state: 1, closeOp: 0)
2023-09-25 13:47:57 [297:root:21]Destroy sconn 0x7f7d139800, connSize=0. (root)
2023-09-25 13:47:57 [297:root:21]SSL state:warning close notify (109.43.179.41)
2023-09-25 13:48:02 [208] __fnbamd_remote_ca_refresh-
2023-09-25 13:48:10 [299:root:24]sslvpn_dtls_timeout_check:312 waiting for client hello timeout.
2023-09-25 13:48:10 [299:root:24]Destroy sconn 0x7f7de3de00, connSize=0. (root)
2023-09-25 13:48:25 [299:root:25]allocSSLConn:310 sconn 0x7f7de3de00 (0:root)
CRPL_Mike

Same.  Connected fine last Friday.

tristan1337
New Contributor

Same, doesn't work anymore since Version 7.2.2.0116

ShayneA
New Contributor

Same. Fortinet please fix the issue.

Oak6t
New Contributor

Can someone from Fortinet address the issue with their latest FortiClient VPN app?

hbac
Staff
Staff

Hi @fabs,

 

Are you using FortiToken for MFA? Does it work without MFA enabled? You can try to reinstall FortiClient and FortiToken app on the iOS device. 

 

Regards, 

fabs
New Contributor III

Hi @hbac 
We using FortiClientVPN 7.2.2.0116 with SAML SSO MFA, no Forti Token.
Reinstall of FortiClientVPN not resolved the issue.
The Authentication is working but not the SSL handshake.

When we use FortiClient 7.2.2.0116 its working.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors