Skip to main content
epinheiro
Staff
Staff
February 23, 2025

Technical Tip: ZTNA is not supported on NGFW in Policy-based mode

  • February 23, 2025
  • 0 replies
  • 681 views
Description This article describes how ZTNA is not supported when FortiGate is in Policy-based mode.
Scope FortiGate, FortiClient EMS, ZTNA.
Solution

Even though ZTNA is available on Feature Visibility when NGFW is in policy-based mode, this feature is not supported in this mode.

 

NGFW mode:

 

NGFW_Mode.png

 

Feature Visibility:

 

Feature_Visibility_ZTNA.png

 

To view and configure all the necessary ZTNA options such as ZTNA Server and ZTNA Rule, it is necessary to change the NGFW mode back to Profile-based which is the default mode.

 

Related article:

ZTNA HTTPS access proxy example 

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.