Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Tommy_Lin
New Contributor

SSLVPN config DNS fail

Dear All,

 

I have an issue with VPN setting up DNS.

 

Make matter short, I am running Forticlient 6.4.3.0959 on Ubuntu 16.04 64-Bit.

I am trying to establish a VPN to my test site.

 

I believe the authentication is correct, but when Forticlient tries to modify my local DNS settings, it fails.  Only works 1/30.

Here's the SSLVPN log.

 

20210519 12:35:06.894 [sslvpn:INFO] main:1412 Init
20210519 12:35:06.894 [sslvpn:INFO] main:370 Load profile: XXX VPN
20210519 12:35:06.895 [sslvpn:INFO] main:118 Get DBUS session bus address
20210519 12:35:06.911 [sslvpn:INFO] main:118 Get DBUS session bus address
20210519 12:35:06.912 [sslvpn:INFO] main:941 Load profile: XXX VPN
20210519 12:35:06.913 [sslvpn:INFO] main:1112 State: Connecting
20210519 12:35:06.926 [sslvpn:INFO] main:1112 State: Logging in
20210519 12:35:06.926 [sslvpn:INFO] vpn_connection:1493 /remote/info
20210519 12:35:06.987 [sslvpn:INFO] main:1112 State: Waiting user confirm remote certificate
20210519 12:35:08.748 [sslvpn:INFO] main:1112 State: Logging in
20210519 12:35:08.748 [sslvpn:INFO] vpn_connection:1493 /remote/info
20210519 12:35:08.850 [sslvpn:INFO] sslvpn:76 ApiEncMethod: 0
20210519 12:35:08.850 [sslvpn:INFO] sslvpn:78 ApiRemoteAuthTimeout: 10
20210519 12:35:08.850 [sslvpn:INFO] sslvpn:80 ApiServerSalt: 45dc0b49
20210519 12:35:08.850 [sslvpn:INFO] sslvpn:81 flag: 0
20210519 12:35:08.850 [sslvpn:INFO] vpn_connection:1493 /remote/login
20210519 12:35:08.929 [sslvpn:INFO] vpn_connection:1493 /remote/logincheck
20210519 12:35:08.995 [sslvpn:INFO] sslvpn:326 Authentication passed
20210519 12:35:08.995 [sslvpn:INFO] vpn_connection:1493 /remote/fortisslvpn
20210519 12:35:09.082 [sslvpn:INFO] vpn_connection:1493 /remote/fortisslvpn_xml
20210519 12:35:09.155 [sslvpn:INFO] sslvpn:729 Login successful
20210519 12:35:09.192 [sslvpn:INFO] main:1112 State: Configuring tunnel
20210519 12:35:19.001 [sslvpn:EROR] vpn_connection:1258 Config DNS failed

 

My DNS setup isn't anything special, 3 interfaces with 3 separate subnet.  I disable IPv6, and I believe DNS resolve is done through systemd-resolved.

 

Can anyone show me how Forticlient configure system's DNS settings, so I can try to figure out why it fails?

 

Thanks.

2 REPLIES 2
akushwaha
Staff
Staff

Hi,
To understand the issue better, can you provide me more information about the issue:

1) Are the windows/MAC user able to connect:
2) Is this happening for all Ubntu users or only some:
3) have you tried a different version of FortiClient:
4)If not tried with different version please try and check.

 

Best regards,

Abhimanyu 

pgautam
Staff
Staff

Hi Tommy,


20210519 12:35:09.192 [sslvpn:INFO] main:1112 State: Configuring tunnel
20210519 12:35:19.001 [sslvpn:EROR] vpn_connection:1258 Config DNS failed

As per the debug logs, FortiClient is not able to make the config, could be OS or other AV or VPN client is not allowing the client to make the change in the resolv.conf

Please check on another Linux machine with a different Ubuntu version like 18.

Can you confirm please that the issue is on one PC only?

 

 

Regards

Priyanka

Labels
Top Kudoed Authors