Fortinet – MAC host check on SSL VPN

config vpn ssl web portal
    edit "mac-check"
        set tunnel-mode enable
        set limit-user-logins enable
        set ip-pools "SSLVPN_TUNNEL_ADDR1"
        set mac-addr-check enable
        config mac-addr-check-rule
            edit "mac_agink"
                set mac-addr-list e0:b5:5f:f8:7d:19
            next
            edit "pc_remote"
                set mac-addr-list 00:0c:29:ec:6e:f4
            next
       end
       config split-dns
           edit 1
               set domains "agink.id"
               set dns-server1 10.10.10.31
               set dns-server2 10.10.11.31
           next
       end
    next
end

Free FortiClient before version 6.2.
-SSLVPN MAC address check is available before version 6.2 but it is not applied to mobile units like Iphone with iOS platform or android OS.

Free FortiClient after version 6.2.

-SSLVPN MAC address check is not available anymore, if enabled in SSLVPN setting, the authentication will be failed all the time.