Technical Tip: Firewall policy group order and SSL VPN auth rules order do not work
| Description | This article describes why the group order on the same firewall policy and the SSL VPN auth rules order has no bearing on the auth process. Even if it seems like a group on the same firewall policy and SSL VPN auth rules can be set in a particular order, this has no bearing in determining the group. If a user can match multiple groups and there is no way to differentiate it, group order/SSL VPN auth rules order will not have any bearing. |
| Scope | FortiGate 6.X, 7.X. |
| Solution | The order is not designed to have a bearing on selecting one group over the other in the auth process.
|
