Skip to main content
mmega
New Member
July 22, 2024
Question

FortiClient EMS without Domain / Azure Sync

  • July 22, 2024
  • 2 replies
  • 1236 views

Hi,

I am testing FortiClient EMS and was thinking about if I even need connection to AD or Entra.

My goal is deploying on our 50 company devices. I did create an installer which is accessable from LAN only and deploy it via a third party tool.

So I do not really see any benefits / needs for adding a connection to Entra... Later on we want to switch to ZTNA - do I need a Entra connection for user authentication for this?

2 replies

spoojary
Staff
Staff
July 22, 2024

for your current deployment scenario and future ZTNA transition, the need for an Entra ID connection for user authentication may not be mandatory. Evaluate your authentication requirements for ZTNA and align them with your deployment strategy

ozkanaltas
Valued Contributor III
July 22, 2024

Hi @mmega ,

 

If you are not going to use a tag such as "Is this user in this group" within the ztna tags, it seems that you do not need to provide a link with the name.

 

For authentication on the ZTNA side, you need to integrate SAML with Azure AD on FortiGate. Something completely independent of EMS.