SSLVPN Gone on 90G running 7.6.1

I know there was rumors about it being removed from the 9xG and 12xG in 7.6. but I can confirm that its gone in 7.6.1. I checked the release notes but dont see any mention of it being removed.

As far as I understood from this subreddit - the rumour was a removal of SSL VPN feature on all desktop model, no matter what revision (F/G) starting at certain FortiOS versions (especially 7.6.x). Thank you for your confirmation, that it appears to have happened indeed on 7.6.1.

On the other hand, I am not surprised that you didn’t find anything in the release notes - so far no one actually provided any official written information from Fortinet - hence this being (still) a rumour.
Edit: I stand corrected!
Edit2: It appears to be still somewhat confusing (at least to me) - it appears that the SSL VPN feature will go away on all desktop models (even those with more than 4GB RAM - as it was rumoured at some point only 2/4 GByte RAM models might be affected). However, it is unclear when exactly this is going to happen and to what degree (which FortiOS version and if CLI config is still available, etc.).
At the end of the day, it appears that SSL VPN is dying off anyhow with 7.6.x latest.

Well shit that explains why it disappeared on a recent deployment.

Thanks for the update.

This info is NOT common knowledge- announcing removal of SSL VPN in 7.6 Fortinet talked about models with 2 Gb of RAM, which is not the case with 90/120 G - 8 Gb of RAM. Which gives now anxiety that they can silently remove SSL VPN from ALL models without warning us ahead.

to confirm, it is 100% gone, not just from the GUI, but also from CLI? it was my understanding that 7.4.x removed it from the GUI, but still had it in CLI

Do you see any throughput gain with 7.6.1 on your 90G?

Is the 90G a 2GB or 8GB RAM model? I have a 91G and SSL VPN works only in 7.0.14, 7.0.15 and 7.2.9, according to a doc I found on Fortinet.

What do you do when IPsec is blocked by ISP ? Any other firewall vendor doing this ?

Does anyone know if the VPN Portal is/has gone away as well? We have found the SSL VPN Portal very useful for serving up bookmarks to users on a loopback interface (not open to WAN). Is there any other options for portal-like access if SSL VPN is dying off?

We’ve found it missing on a 120G running 7.4.5 - can anyone confirm/deny?

Just FYI, the SSL VPN client is still available. It can be configured from the CLI or from the GUI (after enabling it in the “Feature Visibility” section).

https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Unable-to-see-SSL-VPN-and-IPsec-options/ta-p/288653

If you look into the Notes of this article published by Fortinet. It says about the sslvpn issue in 7.6.x and also the possible workaround.

Well, it’s more than just a rumor. If you reach out to your SE they can give you the official word. No idea why it’s not in the release notes but here’s a screenshot from what I received from ours:

F series desktop models with more than 2GB RAM is keeping SSL VPN for now (70F, 80F). For 2GB models it was removed in 7.6.0.

For 90G It is in the release notes for 7.0.16. It was added a few days after release though. But it is missing in 7.6.1 release notes.

This has been public knowledge for about half a year;

F-series: No SSL VPN and proxy mode on <4GB models

G-series: No SSL VPN on desktop models. No proxy mode on <4GB models.

My understanding was that in the 7.6 timeframe, SSL VPN was going to go away for all desktop models.

Within the 7.4 train, it was going to go away for all models with 2GB of RAM.

On FG90G 7.4.5, SSL VPN works perfectly.

7.2.10 works too (but that was just minor patch for 7.2.9) - 7.2.x should become long-term tree and it’s at mature status, so no feature changes should happen here anymore.

Ihttps://docs.fortinet.com/document/fortigate/7.4.5/administration-guide/351073/encapsulate-esp-packets-within-tcp-headers-new

It has to be enabled via CLI on a FortiGate 120G running FortiOS 7.4.5.