Known issues
The following issues have been identified in FortiClient (macOS) 7.4.0. For inquiries about a particular bug or to report a bug, contact Customer Service & Support.
Application Firewall
Bug ID |
Description |
---|---|
970489 |
Application Firewall decreases the internet speed when connecting to IPsec VPN. |
Deployment and installers
Bug ID |
Description |
---|---|
963927 | Jamf FortiClient (macOS) deployment cannot be completely automated. |
Endpoint control
Bug ID |
Description |
---|---|
958511 | FortiClient (macOS) does not support Microsoft Entra ID (formerly known as Azure Active Directory) verification when joining EMS. |
1029889 |
FortiClient ffconfig leaves behind many zombie processes. |
FSSOMA
Bug ID |
Description |
---|---|
956538 |
FortiClient (macOS) does not support multiple FortiAuthenticator server addresses like FortiClient (Windows) FSSO does, and only uses a single IP address. |
GUI
Bug ID |
Description |
---|---|
902595 | GUI SAML prompt flashes on autoconnect. |
Logs
Bug ID |
Description |
---|---|
1013268 | FortiClient does not send blocked/monitored events to FortiAnalyzer unless Log All URLs and Log User initiated traffic are enabled. |
Malware Protection and Sandbox
Bug ID |
Description |
---|---|
984629 | Real-time protection causes delay in opening macOS Sonoma web applications even with exclusions configured. |
988209 | EMS Quarantine Management does not show macOS quarantined files. |
1005341 | User cannot see AV signatures when Malware Protection tab is hidden from EMS. |
1000552 |
In Sandbox Detection, the main page area can overlap with the settings icon when scrolling. |
Remote Access
Bug ID |
Description |
---|---|
984150 | SAML login window does not appear on the first attempt after clicking Disconnect. |
985070 | SSL VPN connection with SAML and Keycloak redirect does not close but connection is up. |
1024936 | FortiClient cannot sync VPN on connect script properly. |
1026704 | Autoconnect should continuously attempt to reconnect unless the user stops it. |
1031812 | User can turn off autoconnect on FortiClient when it is pushed from EMS. |
Remote Access - IPsec VPN
Bug ID |
Description |
---|---|
967173 | macOS Monterey-Sonoma system proxy does not work with IPsec VPN. |
987000 | FortiClient (macOS) does not block IPv6 traffic after IPsec VPN tunnel establishes with Block IPv6 enabled in EMS. |
1012095 | IPsec VPN does not support enforcing disclaimer message acceptance. |
1031134 | IPsec VPN tunnel using SAML authentication does not reconnect while Always Up and Auto Connect are enabled. |
Remote Access - SSL VPN
Bug ID |
Description |
---|---|
866711 | SSL VPN with SAML + FIDO2 authentication does not work with built-in browser. |
1002659 | When connected to mobile tethering on macOS, SSL VPN logon is not possible. |
1006295 | FortiClient fails to consistently connect (40%) with DNS round robin of FortiGates (SASE). |
1020273 | FortiClient (macOS) cannot receive any traffic from FortiGate over SSL VPN when security posture tag is configured on firewall policy. |
1023460 |
SSO authentication stops working if using |
1026477 | SSL VPN SAML with Azure multifactor authentication periodically forced reauthentication fails to reconnect using built-in browser. |
1029584 | FortiClient (macOS) does not apply FortiOS SSL VPN custom host check error message and always uses default message. |
1031467 | User cannot click input boxes in built-in SAML login prompt when using third party identity provider. |
Web Filter and plugin
Bug ID |
Description |
---|---|
971415 | FortiClient (macOS) blocks images embedded with URLs on all email clients. |
998541 | Web Filter on Only when Endpoint is Off-Fabric does not work properly. |
1002798 |
Web Filter (proxy) prevents webpage elements from loading. |
1010838 | Endpoint with Docker desktop and FortiClient (macOS) does not enforce Web Filter when VPN is disconnected. |
1013999 | With DPI enabled on the FortiGate, FortiClient with Web Filter slows down webpage loading. |
1019409 | Web Filter HTTP mode does not work properly. |
1022664 | When FortiClient (macOS) is configured to block all Web Filter categories , exclusions do not work properly. |
1026797 |
Web Filter Proceed button does not work properly. |
ZTNA connection rules
Bug ID |
Description |
---|---|
807827 |
FortiClient is missing external browser support for SAML authentication for ZTNA. |
853281 | FortiClient (macOS) does not show the inline CASB database signatures on the About page. |
994025 | ZTNA fails to work when no port number is specified on the destination rule. |
1000558 | Destination host access fails to work with certain wildcard FQDN destinations using special formats like name*.domain.com. |
1005441 | FortiClient fails to show status and error message for ZTNA TCP forwarding. |
1012318 |
Endpoints cannot connect to ZTNA after sleep or lid is off/on. |
1027379 | Performance issue occurs with FortiClient SMB over ZTNA. |
1032986 | ZTNA destination based SMB drive access fails to load for the first time when authentication is enabled. |