March 26, 2026

In January, we announced that Karis is moving forward with the new FortiClient VPN configuration. This new configuration is to replace the current FortiClient SSL VPN that many of you use today.

This migration was briefly delayed to resolve technical issues with Fortinet, which have now been addressed, and the project is proceeding on the updated timeline.

The existing FortiClient SSL VPN will be turned off on April 10, 2026 at 4:30 PM.

Why are we making this change?

  • SSL VPN: A secure, web‑based connection that lets users access work systems over the Internet but is more exposed because it behaves like a public website.
  • IPsec VPN: A private, encrypted tunnel that securely connects a user’s device directly to the organization’s network, as if they were in the office.
  • The current SSL VPN technology is often targeted by cyber criminals. In many well‑known security incidents, attackers gained access by exploiting weaknesses in this type of VPN.
  • The new IPsec VPN uses a more secure connection that is harder for attackers to break into. It provides better protection for both your device and Karis’ data.

What you need to know:

  • The existing FortiClient SSL VPN will be turned off on April 10, 2026 at 4:30 PM.
  • To use the new FortiClient IPsec VPN, the DTI Help Desk needs to update your FortiClient to version 7.2.13.1284 and upload the new configuration (see Next steps).
  • Other versions of FortiClient will not work once the change is complete.

Next steps:

Thank you for your cooperation as we make this important security improvement.

Bert Vanedkuyt, Manager of IT Security, DTI