Information Services

FortiClient VPN - Windows SSL Configuration

Installing and setting up the Fortinet FortiClient VPN for Windows client.

There are  two VPN options available when using the FortiClient VPN application, SSL and IPSec. SSL is the recommended option as it is more reliable and likely to work in all scenarios compared with IPSec which may not work from some networks like those in hotels and cafes.  With the FortiClient VPN application installed you can configure both options and select the one that works best, we strongly advise testing the configuration before travelling.

Note: Before begining you should ensure your operating system is fully up to date with all Operating System updates and security fixes as well as the latest anti-virus or malware software. FortiClient VPN 6.4 requires Windows 7, 8.1 or 10 (32 or 64 bit), before it will install.

 

First, install the FortiClient VPN application.

  1. Download the FortiClient VPN (Note: do not download "FortiClient 6.0" or "FortiClient 6.4", scroll down the page and look for "FortiClient VPN")
  2. Double-click on the installer (FortiClientVPNOnlineInstaller_6.4.exe)
  3. Read through and accept the license agreement, tick 'Yes I have read and accept the License agreement'   and click "Next".
  4. On the Destination Folder screen, leave Install Forticlient To: as the default value  -  "C:\Program Files\Fortinet\FortiClient"
  5. On the Ready To Install FortiClient screen click "Install".
  6. Once the install is complete, click "Finish"
  7. From the Start menu, launch the FortiClient VPN application.

To configure the recommended SSL VPN connection:

  1. For VPN select "SSL-VPN"
  2. For Connection Name enter "VPN@Ed - SSL" - Note newer versions don't allow the use of special characters - /\:'<>()%#
  3. For Description enter "SSL VPN Connection to UoE"
  4. For Remote Gateway enter "remote.net.ed.ac.uk"
  5. Tick Customize port and enter 8443
  6. Leave all other values with their default settings:
    1. Enable Single Sign ON (SSO) for VPN Tunnel = unticked
    2. Client Certificate = "None"
    3. Authentication = "Prompt on login"
    4. Do not Warn Invalid Server Certificate = unticked
  7. Click Save to save the configuration
  8. Select the VPN connection you have just created from the "VPN Name" field
  9. Enter your username(uun) and VPN password (seperate from normal password) and click 'Connect'.

Now to configure the optional IPSec VPN connection:

  1. For VPN select "IPSec VPN"
  2. For Connection Name enter "VPN@Ed - IPSec"
  3. For Description enter "IPSec VPN Connection to UoE"
  4. For Remote Gateway enter "remote.net.ed.ac.uk"
  5. For Authentication Method select "Pre-shared key"
  6. In the field below enter "Zt6337ZnVLhN"
  7. For Authentication(XAuth) select "Prompt on login"
  8. All other values can be left as default
  9. Click Save to save the configuration
  10. Select the VPN connection you have just created from the "VPN Name" field
  11. Enter your username(uun) and VPN password (seperate from normal password) and click 'Connect'.

 

The above steps are based on version 6.4 of the FortiClient VPN application.

 

Troubleshooting

If you are having problems connecting once you have setup your new VPN connection then check the troubleshooting and common issues page for some suggestions.