FortiAuthenticator best practices
Hello,
We are moving pretty much everything to Fortinet (sick & tired of being stuck between vendors pointing fingers at each other).
In the process of deploying Fortiauthenticator for MFA on VPN and Desktops, but before I register IP address for already installed and configured FA, I'd like to know if it should be in DMZ?
-Everything is on-prem.
-To start with, we'll b using OTP for MFA
-Windows Environment (Win10/2016)
-Local CA root installed and I can import users from AD.
Is there anything else I should watch for?
