Fortinet black logo

Known issues

Known issues

The following issues have been identified in FortiClient (Linux) 7.2.3. For inquiries about a particular bug or to report a bug, contact Customer Service & Support.

Avatar and social login information

Bug ID

Description

878050 Avatar does not update on FortiOS dashboards and FortiOS cannot show updated information.

Configuration

Bug ID

Description

730415 FortiClient (Linux) backs up configuration that is missing locally configured ZTNA connection rules.

GUI

Bug ID

Description

902595 GUI SAML prompt flashes on autoconnect.
923097 Preferred DTLS Tunnel does not work.
952680 GUI fails to launch and shows up blank.
972930 FortiClient has delay in opening the embedded or external browser after clicking SAML button for VPN connection.
975581 GUI does not open after fresh installation for root user and FortiClient (Linux) works only via CLI.

Malware Protection and Sandbox

Bug ID

Description

869664

Real-time protection does not monitor newly inserted USB drive.

Logs

Bug ID

Description

811746

FortiClient (Linux) sends duplicated and old logs to FortiAnalyzer.

872875 Disabling Client-Based Logging When On-Fabric in EMS does not work for Linux endpoints.

966018

FortiClient uploads logs more frequently than configured upload interval.

Endpoint control

Bug ID

Description

869658 FortiClient does not detect USB drive if the USB drive is not partitioned.
979669 User avatar fails to upload to FortiAnalyzer.

License

Bug ID

Description

874676

Endpoint is tagged with existing ZTNA host tags for Vulnerability and AV after EMS license is updated from Endpoint Protection Platform to Remote Access.

Onboarding

Bug ID

Description

811976 FortiClient may prioritize using user information from authentication user registered to EMS.
872136 User verification period option under user verification does not work as configured.

Remote Access

Bug ID

Description

825387 SSL VPN with SAML when FQDN with DNS round robin is used for load balancing does not work.
851600 FortiClient fails to connect to SSL VPN with FQDN resolving to multiple IP addresses while FortiClient (Linux) cannot reach resolved IP address.
857154 FortiClient (Linux) does not include option to enable load balancing SSL VPN gateways with single FQDN.
874669 FortiClient does not attempt to connect with redundant SAML VPN gateway if it cannot reach first gateway.
876539 FortiClient on Red Hat 9 cannot resolve domain name properly using DNS server that SSL VPN pushed.

893237

User cannot reenter password during autoconnect after identity provider password change.

914271 SSL VPN resilience is misconfigured when pushed from EMS.
917898 host-check-policy works as AND operation instead of OR operation.
929544 SSL VPN tunnel created using the CLI fails to save the username and authentication is always disabled.
941256 Ubuntu 20.04 and 22.04 do not use SSL VPN with prefer_ssl_vpn_dns=1.
950306 SSL VPN creates two interfaces and routes and causes traffic loss.
954067 FortiClient (Linux) autoconnect does not work with save-password option and SAML authentication.
972004 Enable Invalid Server Certificate Warning does not work for IPsec VPN with SAML authentication.
972089 FortiClient VPN is stuck at 98% when connected to iPhone hotspot.

Vulnerability Scan

Bug ID

Description

771833 FortiClient tags endpoint as vulnerable, even when EMS has enabled Exclude Application Vulnerabilities Requiring Manual Update from Vulnerability.

832731

Server version forticlient vulscan scan command returns no vulnerabilities.

Web Filter and plugin

Bug ID

Description

939743 Web Filter does not support IPv6.
962343 FortiClient does not block unrated sites when it cannot access FortiGuard servers.
977317 FortiClient does not use Web Filter rating URL provided using XML tag on EMS.

Endpoint management

Bug ID

Description

891264 EMS creates duplicate records for domain-joined Ubuntu endpoints.

ZTNA connection rules

Bug ID

Description

857909 FortiClient (Linux) does not support enabling encryption for ZTNA TCP forwarding rules acquired from ZTNA service portal.

857999

FortiClient (Linux) does not support using external browser for SAML authentication for ZTNA rules acquired through service portal.

941037 ZTNA destination does not work after host reboot.
950257 ZTNA destination works when using IP address but fails when using FQDN to the same destination.
950953 ZTNA TCP forwarding does not show certificate content for untrusted certificate.

975845

FortiClient does not notify end user that certificate is not trusted for ZTNA connection when <disallow_invalid_server_certificate> is enabled.

Known issues

The following issues have been identified in FortiClient (Linux) 7.2.3. For inquiries about a particular bug or to report a bug, contact Customer Service & Support.

Avatar and social login information

Bug ID

Description

878050 Avatar does not update on FortiOS dashboards and FortiOS cannot show updated information.

Configuration

Bug ID

Description

730415 FortiClient (Linux) backs up configuration that is missing locally configured ZTNA connection rules.

GUI

Bug ID

Description

902595 GUI SAML prompt flashes on autoconnect.
923097 Preferred DTLS Tunnel does not work.
952680 GUI fails to launch and shows up blank.
972930 FortiClient has delay in opening the embedded or external browser after clicking SAML button for VPN connection.
975581 GUI does not open after fresh installation for root user and FortiClient (Linux) works only via CLI.

Malware Protection and Sandbox

Bug ID

Description

869664

Real-time protection does not monitor newly inserted USB drive.

Logs

Bug ID

Description

811746

FortiClient (Linux) sends duplicated and old logs to FortiAnalyzer.

872875 Disabling Client-Based Logging When On-Fabric in EMS does not work for Linux endpoints.

966018

FortiClient uploads logs more frequently than configured upload interval.

Endpoint control

Bug ID

Description

869658 FortiClient does not detect USB drive if the USB drive is not partitioned.
979669 User avatar fails to upload to FortiAnalyzer.

License

Bug ID

Description

874676

Endpoint is tagged with existing ZTNA host tags for Vulnerability and AV after EMS license is updated from Endpoint Protection Platform to Remote Access.

Onboarding

Bug ID

Description

811976 FortiClient may prioritize using user information from authentication user registered to EMS.
872136 User verification period option under user verification does not work as configured.

Remote Access

Bug ID

Description

825387 SSL VPN with SAML when FQDN with DNS round robin is used for load balancing does not work.
851600 FortiClient fails to connect to SSL VPN with FQDN resolving to multiple IP addresses while FortiClient (Linux) cannot reach resolved IP address.
857154 FortiClient (Linux) does not include option to enable load balancing SSL VPN gateways with single FQDN.
874669 FortiClient does not attempt to connect with redundant SAML VPN gateway if it cannot reach first gateway.
876539 FortiClient on Red Hat 9 cannot resolve domain name properly using DNS server that SSL VPN pushed.

893237

User cannot reenter password during autoconnect after identity provider password change.

914271 SSL VPN resilience is misconfigured when pushed from EMS.
917898 host-check-policy works as AND operation instead of OR operation.
929544 SSL VPN tunnel created using the CLI fails to save the username and authentication is always disabled.
941256 Ubuntu 20.04 and 22.04 do not use SSL VPN with prefer_ssl_vpn_dns=1.
950306 SSL VPN creates two interfaces and routes and causes traffic loss.
954067 FortiClient (Linux) autoconnect does not work with save-password option and SAML authentication.
972004 Enable Invalid Server Certificate Warning does not work for IPsec VPN with SAML authentication.
972089 FortiClient VPN is stuck at 98% when connected to iPhone hotspot.

Vulnerability Scan

Bug ID

Description

771833 FortiClient tags endpoint as vulnerable, even when EMS has enabled Exclude Application Vulnerabilities Requiring Manual Update from Vulnerability.

832731

Server version forticlient vulscan scan command returns no vulnerabilities.

Web Filter and plugin

Bug ID

Description

939743 Web Filter does not support IPv6.
962343 FortiClient does not block unrated sites when it cannot access FortiGuard servers.
977317 FortiClient does not use Web Filter rating URL provided using XML tag on EMS.

Endpoint management

Bug ID

Description

891264 EMS creates duplicate records for domain-joined Ubuntu endpoints.

ZTNA connection rules

Bug ID

Description

857909 FortiClient (Linux) does not support enabling encryption for ZTNA TCP forwarding rules acquired from ZTNA service portal.

857999

FortiClient (Linux) does not support using external browser for SAML authentication for ZTNA rules acquired through service portal.

941037 ZTNA destination does not work after host reboot.
950257 ZTNA destination works when using IP address but fails when using FQDN to the same destination.
950953 ZTNA TCP forwarding does not show certificate content for untrusted certificate.

975845

FortiClient does not notify end user that certificate is not trusted for ZTNA connection when <disallow_invalid_server_certificate> is enabled.