Bonum Certa Men Certa

Sometimes Proprietary Software is Proprietary (Secret) Simply Because It is Not Good and Obfuscation Helps Hide Just How Ugly It Is

The story of FortiClient resembles what I've often encountered over the years with other proprietary VPNs (not of my choice)

Proprietary Software. You pay to be abused.



Summary: Why nonfree (or proprietary) software generally fails to catch up with Free/libre software -- at least on technical grounds -- and then makes up for it with marketing and FUD offensives (discrediting perfectly-functioning things, based on their perceived cost)

OVER the years I've encountered and used a lot of VPNs. It's one thing I'm quite familiar with, having configured and debugged VPNs quite a lot. At work, we use Free/libre VPNs that we host and manage ourselves (typically OpenVPN and IPSec/StrongSwan). But clients' choices of VPN are another matter. Occasionally I must access a client's GNU/Linux server to carry out maintenance, patching and software upgrades. It's quite a routine thing.



"Why is it that Free software generally works a lot more consistently than proprietary counterparts and why do some people pay a lot of money for VPN tools that not only cost a lot of money but need to be 'repurchased' (re-licensed) annually or any time one 'upgrades'?"VPN software varies from client to client and some VPN tools are so awful that it's not even funny. It can be painful. At times impossible!

Why is it that Free software generally works a lot more consistently than proprietary counterparts and why do some people pay a lot of money for VPN tools that not only cost a lot of money but need to be 'repurchased' (re-licensed) annually or any time one 'upgrades'? Suffice to say, many of these proprietary things have holes in them (kept under the rug), so one might actually be paying for additional security holes rather than security. Snowden's stash of leaks revealed some evidence to that effect.

"Much time down the drain."One might say I'm opinionated, but I'm not alone. It's not only me who complains by the way; a colleague explained that "[a]t the moment the only access we have for [client] is via a horrible proprietary VPN. You are only able to get clients for Windows and Mac officially, however an Ubuntu client has been found that works too. To make things more complicated it does not appear to work at all in Windows Server, meaning we can't provide access though the Windows [shared/remote virtual] box. If you have a Windows or Mac box, you can download the client from http://forticlient.com/ and the Ubuntu one can be found here https://forticlient.com/repoinfo..."

Well, nothing that I've tried allows me to access the client's network. Much time down the drain. You can try again and again (dealing with binary blobs). The FortiClient software is defective, however, as it shows an unimpressive blank window each time it starts (I tried other, more complicated things) and there's no way to debug this.

FortiClient
So-called 'Client'; Whose exactly? Spy agencies?



If I run this from the command line it says:

"Platform detected: fedora" (which is false by the way, it's not even an RPM-based distro, so I think they need to do more work on their client-side tools if it's advertised as cross-platform)

"The bottom line is, proprietary VPN software is utterly bad, it rarely prevents security incidents, and it is more like duct tape on top of something inherently broken."Our internal wiki indicates that we cannot access this over a virtual Windows Server, either. Because that too is not supported. What other access options may there be? And why need they complicate access to the point where they shut out people who merely try to keep their machines secure and up to date? As a Techrights associate recently noted, the whole concept behind VPN is flawed. It seems to assume that operating systems in use aren't safe if connected to the Web (there are NSA back doors, for starters), so complete separation and insulation from the network is seen as desirable. Later this year our combined lifetime for Tux Machines and Techrights will be 30 years. We're a high-profile target for attacks, Techrights in particular (many DDOS attacks over the years), but we never had any security incidents and we never used VPNs. We even gave up on so-called 2FA, knowing that it sounds better in theory than (how it works) in practice.

The bottom line is, proprietary VPN software is utterly bad, it rarely prevents security incidents, and it is more like duct tape on top of something inherently broken. Moreover, the quality of proprietary VPN software is utterly appalling. The same can be said about proprietary software other than VPNs, but these companies compensate for that with heavy marketing campaigns and waves of FUD directed at Free software counterparts.

Recent Techrights' Posts

Germany, Like Switzerland, Will Dump Microsoft's Proprietary Software and Disservices, Then Dump Windows for GNU/Linux
This impacts not only the Windows revenue; this corrodes any "rents" Microsoft was getting from "subscriptions"
There Are Likely Over a Thousand Internet Relay Chat (IRC) Networks Online, Net Gain of 16 Seen This Month by Andreas Gelhausen's netsplit.de
It's good that they're still tracking that sort of stuff
SLAPP Censorship - Part 194 Out of 200: The Court Needs to Also Look Into Microsoft-Controlled Restricted Boot Advanced by An American (Garrett) to Promote Monopoly and Back Doors Everywhere
Kill switch sold as 'security' is like euthanasia sold as a cure
Linux Kernel Becoming a Slopfest - Part 7 - Infested With or Plagued by Bot-Generated Slop, Committed by Microsofters
Slop is a security threat; even the person committing slop to Linux might not be aware that there's a back/bug door in the code
Edward Snowden Lost His Voice, Then His Leaks Lost Exposure (Access Denied)
When states want to deny people access to some information they have many tools at hand
 
Same Name/Brand, Not the Same Project/Product
What is Linux becoming?
3 Years Divorced From Americans
Next year we plan to pursue the UK's Court of Appeal
The Register MS Uses Slop About Slop (in Images)
Months ago we caught The Register MS using slop for text as well
SLAPP Censorship - Part 195 Out of 200: Two Years Since Garrett, Graveley and Lozza Worked in Parallel to Censor Techrights
It began in September 2024, shortly after we had sued Garrett
Linux Kernel Becoming a Slopfest - Part 8 - In Conclusion
this can invite more SCO-like problems in the future
Microsoft Shuts Down More Studios, Morale Low, More Mass Layoffs Ahead of Reports
They pretend it's not happening or that it's a lot smaller than it actually is
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, September 22, 2026
IRC logs for Tuesday, September 22, 2026
Gemini Links 23/09/2026: Ljubljana, Poetry, and FORTRAN
Links for the day
The EPO's Central Staff Committee (CSC) Shows Job Insecurity at Europe's Second-Largest Institution
Who would want to join a company with such low job security?
There Are Thousands More Microsoft Layoffs (Including Silent Layoffs), Not Hundreds
Microsoft does have layoffs and today is no exception (except Microsoft talks about it)
Gemini Links 22/09/2026: Disability Studies, Slop Boosters, and TkInter
Links for the day
Links 22/09/2026: Flock is Collapsing Amid Mass Backlash and Internet Society Collaborates With the 'Epstein Class' (Trafficking of Women)
Links for the day
Raspberry Pi Has Microsoft Secrets Inside, Now DRM
now we deal with SBCs that have DRM in them, put there for commercial reasons
2 Hours Ago The Register MS Published a Page That Says "AI" 42 Times Because It Was Paid to Do So
Still inflating the bubble for money
Gemini Links 22/09/2026: Scout Night, Cybernetic Capitalism, and Thoughts on Companies Forcing People to Adopt Plagiarism Engines
Links for the day
Links 22/09/2026: "An Arsenal of Surveillance" and Slop Bots Suggest Starting Wars
Links for the day
SLAPP Censorship - Part 193 Out of 200: Breaks GNU and Linux, Tries to Silence Critics, Loses All Money, Looks for Microsoft Allies and Sponsors
The latest emotional knee-jerk reactions serve to confirm what we have long said
Things Will Only Get Better (as We Go Backwards)
It only gets better. If you go back in time.
UK High Court Shows SRA is Totally Useless in Curbing SLAPPs, This Has Impact on Our Reporting on the SRA Next Week
We'll carry on our coverage and soon finish the current series that so we can get on with more time-sensitive ones
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Monday, September 21, 2026
IRC logs for Monday, September 21, 2026
Links 21/09/2026: "Lies of the Hey Hi (AI) Industry" and Solar Power Is Getting Cheap
Links for the day
Gemini Links 21/09/2026: Equinox and Beginner's Guide to Gemini
Links for the day
Links 21/09/2026: "Back On My Bicycle" and American Regime's War on Media Escalates Further
Links for the day
SLAPP Censorship - Part 192 Out of 200: The Hired Guns of Garrett and Graveley Sent Us USB Sticks (One to Me, One to My Wife) Showing Lozza Talking to Garrett About Censoring/Deplatforming Techrights the Same Time Graveley Was Copy-Pasting Garrett's Lawsuit
Next year we plan to bring this matter to the Court of Appeal
Linux Kernel Becoming a Slopfest - Part 6 - Seeing Who Contaminates Linux With Slop (And Also Admits It)
Today we begin looking at some culprits
2026: The Year Galleries Realised the Need to Flag or Cull Slop Images
Society needs to shun slopfarms, people who use LLM slop (for anything at all), companies that use bots (which they dub "agents"), and so-called 'coders' who volley garbage into project and software hubs
Software Freedom Day Celebrated in 5 or 6 Continent
Software Freedom Day (SFD) 2026 was big this year
SLAPP Censorship - Part 191 Out of 200: Garrett, Graveley and Lozza
They talk to and coordinate with one another
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, September 20, 2026
IRC logs for Sunday, September 20, 2026
Gemini Links 21/09/2026: Digital Hoarder, GTD, Minimalism vs Digital Minimalism, Rejection of LLMs
Links for the day