Basic FortiClient EMS questions
Hello team!!
I read the first 8 chapters of the "FortiClient EMS 7.4 Administrator Study Guide". After this I started to open the FortiClient Cloud, and created some different objects there. But playing with my FortiClient Cloud, before set this in production, I get some questions. Please, answer my questions or guide me to reach the answers. Sorry if there are obvious questions.
1) I configured an authentication server (Windows AD), and this is connected, but when I create a Group Assignment Rule, I cannot select a Domain Group, just workgroup group. Why? (All computers objects are in All Endpoint as "Not installed", and I am able to use Domain Groups in "Manage Deployment")
2) If I want that a group has a ZTNA application (The app is hosted in a server which is in the same site that Fortigate), I need to create 2 applications? (One for on-fabric endpoints and the another for off-fabric endpoints). If not, where do I need to point this?
3) For on-fabric endpoints, I can create on Fortigate, a rule to allow certain application, which are the diffences, between allow this traffic on Fortigate, and create a ZTNA application on FortiClient EMS?
4) Is there a way to chose sub-categories on web filter profiles in FortiClient EMS? (When I create a new profile, I just can select categories, not sub-categories)
5) What is "Deployment & Installers -> Manage Deployments" for? In the study guide, I learned that FortiClient could be deployed through GPOs, SCCM, and third party applications as in tune
Thanks in advance.
Regards
Damián