Skip to main content
_mribwan
Staff
Staff
October 4, 2024

Technical Tip : Using SD-WAN interface (virtual wan link) as source interface for ZTNA Authentication Rule

  • October 4, 2024
  • 0 replies
  • 1546 views
Description This article describes the feature of being able to use the SD-WAN interface (virtual wan link) as the source interface for the ZTNA Authentication Rule.
Scope FortiOS 7.4.1+, 7.6.0+
Solution

Authentication Rule is required in the configuration of ZTNA. It defines the proxy sources and destinations that require authentication, and which authentication scheme to apply

 

Selection of the SD-WAN interface (virtual-wan-link) is only available on v7.4.1+, v7.6.0+, and above only, as it is considered a new feature :

 

sdwan interface available to be used as source interface for Authentication Rule srcintfsdwan interface available to be used as source interface for Authentication Rule srcintf

 

GUIGUI

 

Another unsupported version will encounter the error 'Entry not found in datasource' when selecting it. The SD-WAN interface will also be unavailable via CLI:

 

GUI error upon selecting SDWAN interfaceGUI error upon selecting SDWAN interface

 

No SDWAN interface on CLINo SDWAN interface on CLI