Fortinet white logo
Fortinet white logo

Known issues

Known issues

The following issues have been identified in FortiClient (macOS) 7.4.0. For inquiries about a particular bug or to report a bug, contact Customer Service & Support.

Application Firewall

Bug ID

Description

970489

Application Firewall decreases the internet speed when connecting to IPsec VPN.

Deployment and installers

Bug ID

Description

963927 Jamf FortiClient (macOS) deployment cannot be completely automated.

Endpoint control

Bug ID

Description

958511 FortiClient (macOS) does not support Microsoft Entra ID (formerly known as Azure Active Directory) verification when joining EMS.

1029889

FortiClient ffconfig leaves behind many zombie processes.

FSSOMA

Bug ID

Description

956538

FortiClient (macOS) does not support multiple FortiAuthenticator server addresses like FortiClient (Windows) FSSO does, and only uses a single IP address.

GUI

Bug ID

Description

902595 GUI SAML prompt flashes on autoconnect.

Logs

Bug ID

Description

1013268 FortiClient does not send blocked/monitored events to FortiAnalyzer unless Log All URLs and Log User initiated traffic are enabled.

Malware Protection and Sandbox

Bug ID

Description

984629 Real-time protection causes delay in opening macOS Sonoma web applications even with exclusions configured.
988209 EMS Quarantine Management does not show macOS quarantined files.
1005341 User cannot see AV signatures when Malware Protection tab is hidden from EMS.

1000552

In Sandbox Detection, the main page area can overlap with the settings icon when scrolling.

Remote Access

Bug ID

Description

984150 SAML login window does not appear on the first attempt after clicking Disconnect.
985070 SSL VPN connection with SAML and Keycloak redirect does not close but connection is up.
1024936 FortiClient cannot sync VPN on connect script properly.
1026704 Autoconnect should continuously attempt to reconnect unless the user stops it.
1031812 User can turn off autoconnect on FortiClient when it is pushed from EMS.

Remote Access - IPsec VPN

Bug ID

Description

967173 macOS Monterey-Sonoma system proxy does not work with IPsec VPN.
987000 FortiClient (macOS) does not block IPv6 traffic after IPsec VPN tunnel establishes with Block IPv6 enabled in EMS.
1012095 IPsec VPN does not support enforcing disclaimer message acceptance.
1031134 IPsec VPN tunnel using SAML authentication does not reconnect while Always Up and Auto Connect are enabled.

Remote Access - SSL VPN

Bug ID

Description

866711 SSL VPN with SAML + FIDO2 authentication does not work with built-in browser.
1002659 When connected to mobile tethering on macOS, SSL VPN logon is not possible.
1006295 FortiClient fails to consistently connect (40%) with DNS round robin of FortiGates (SASE).
1020273 FortiClient (macOS) cannot receive any traffic from FortiGate over SSL VPN when security posture tag is configured on firewall policy.

1023460

SSO authentication stops working if using <use_gui_saml>.

1026477 SSL VPN SAML with Azure multifactor authentication periodically forced reauthentication fails to reconnect using built-in browser.
1029584 FortiClient (macOS) does not apply FortiOS SSL VPN custom host check error message and always uses default message.
1031467 User cannot click input boxes in built-in SAML login prompt when using third party identity provider.

Web Filter and plugin

Bug ID

Description

971415 FortiClient (macOS) blocks images embedded with URLs on all email clients.
998541 Web Filter on Only when Endpoint is Off-Fabric does not work properly.

1002798

Web Filter (proxy) prevents webpage elements from loading.

1010838 Endpoint with Docker desktop and FortiClient (macOS) does not enforce Web Filter when VPN is disconnected.
1013999 With DPI enabled on the FortiGate, FortiClient with Web Filter slows down webpage loading.
1019409 Web Filter HTTP mode does not work properly.
1022664 When FortiClient (macOS) is configured to block all Web Filter categories , exclusions do not work properly.

1026797

Web Filter Proceed button does not work properly.

ZTNA connection rules

Bug ID

Description

807827

FortiClient is missing external browser support for SAML authentication for ZTNA.

853281 FortiClient (macOS) does not show the inline CASB database signatures on the About page.
994025 ZTNA fails to work when no port number is specified on the destination rule.
1000558 Destination host access fails to work with certain wildcard FQDN destinations using special formats like name*.domain.com.
1005441 FortiClient fails to show status and error message for ZTNA TCP forwarding.

1012318

Endpoints cannot connect to ZTNA after sleep or lid is off/on.

1027379 Performance issue occurs with FortiClient SMB over ZTNA.
1032986 ZTNA destination based SMB drive access fails to load for the first time when authentication is enabled.

Known issues

Known issues

The following issues have been identified in FortiClient (macOS) 7.4.0. For inquiries about a particular bug or to report a bug, contact Customer Service & Support.

Application Firewall

Bug ID

Description

970489

Application Firewall decreases the internet speed when connecting to IPsec VPN.

Deployment and installers

Bug ID

Description

963927 Jamf FortiClient (macOS) deployment cannot be completely automated.

Endpoint control

Bug ID

Description

958511 FortiClient (macOS) does not support Microsoft Entra ID (formerly known as Azure Active Directory) verification when joining EMS.

1029889

FortiClient ffconfig leaves behind many zombie processes.

FSSOMA

Bug ID

Description

956538

FortiClient (macOS) does not support multiple FortiAuthenticator server addresses like FortiClient (Windows) FSSO does, and only uses a single IP address.

GUI

Bug ID

Description

902595 GUI SAML prompt flashes on autoconnect.

Logs

Bug ID

Description

1013268 FortiClient does not send blocked/monitored events to FortiAnalyzer unless Log All URLs and Log User initiated traffic are enabled.

Malware Protection and Sandbox

Bug ID

Description

984629 Real-time protection causes delay in opening macOS Sonoma web applications even with exclusions configured.
988209 EMS Quarantine Management does not show macOS quarantined files.
1005341 User cannot see AV signatures when Malware Protection tab is hidden from EMS.

1000552

In Sandbox Detection, the main page area can overlap with the settings icon when scrolling.

Remote Access

Bug ID

Description

984150 SAML login window does not appear on the first attempt after clicking Disconnect.
985070 SSL VPN connection with SAML and Keycloak redirect does not close but connection is up.
1024936 FortiClient cannot sync VPN on connect script properly.
1026704 Autoconnect should continuously attempt to reconnect unless the user stops it.
1031812 User can turn off autoconnect on FortiClient when it is pushed from EMS.

Remote Access - IPsec VPN

Bug ID

Description

967173 macOS Monterey-Sonoma system proxy does not work with IPsec VPN.
987000 FortiClient (macOS) does not block IPv6 traffic after IPsec VPN tunnel establishes with Block IPv6 enabled in EMS.
1012095 IPsec VPN does not support enforcing disclaimer message acceptance.
1031134 IPsec VPN tunnel using SAML authentication does not reconnect while Always Up and Auto Connect are enabled.

Remote Access - SSL VPN

Bug ID

Description

866711 SSL VPN with SAML + FIDO2 authentication does not work with built-in browser.
1002659 When connected to mobile tethering on macOS, SSL VPN logon is not possible.
1006295 FortiClient fails to consistently connect (40%) with DNS round robin of FortiGates (SASE).
1020273 FortiClient (macOS) cannot receive any traffic from FortiGate over SSL VPN when security posture tag is configured on firewall policy.

1023460

SSO authentication stops working if using <use_gui_saml>.

1026477 SSL VPN SAML with Azure multifactor authentication periodically forced reauthentication fails to reconnect using built-in browser.
1029584 FortiClient (macOS) does not apply FortiOS SSL VPN custom host check error message and always uses default message.
1031467 User cannot click input boxes in built-in SAML login prompt when using third party identity provider.

Web Filter and plugin

Bug ID

Description

971415 FortiClient (macOS) blocks images embedded with URLs on all email clients.
998541 Web Filter on Only when Endpoint is Off-Fabric does not work properly.

1002798

Web Filter (proxy) prevents webpage elements from loading.

1010838 Endpoint with Docker desktop and FortiClient (macOS) does not enforce Web Filter when VPN is disconnected.
1013999 With DPI enabled on the FortiGate, FortiClient with Web Filter slows down webpage loading.
1019409 Web Filter HTTP mode does not work properly.
1022664 When FortiClient (macOS) is configured to block all Web Filter categories , exclusions do not work properly.

1026797

Web Filter Proceed button does not work properly.

ZTNA connection rules

Bug ID

Description

807827

FortiClient is missing external browser support for SAML authentication for ZTNA.

853281 FortiClient (macOS) does not show the inline CASB database signatures on the About page.
994025 ZTNA fails to work when no port number is specified on the destination rule.
1000558 Destination host access fails to work with certain wildcard FQDN destinations using special formats like name*.domain.com.
1005441 FortiClient fails to show status and error message for ZTNA TCP forwarding.

1012318

Endpoints cannot connect to ZTNA after sleep or lid is off/on.

1027379 Performance issue occurs with FortiClient SMB over ZTNA.
1032986 ZTNA destination based SMB drive access fails to load for the first time when authentication is enabled.