Skip to main content
Brianolo
New Member
August 8, 2022
Solved

Forticloud EMS - Add a Domain

  • August 8, 2022
  • 3 replies
  • 2598 views

I'm working on a new ZTNA deployment and I would like to create tags based on domain OU membership.  Is this possible when using Cloud EMS?

 

It appears I would configure SAML Configuration under user management in EMS, but I've only found instructions for using my firewall as the identity provider.  I thought I would be using Azure AD as the IdP like I did for Admin and VPN access.

 

 

Best answer by Brianolo

I think I found the answer to my question. 

 

FortiClient Cloud does not currently support initial FortiClient deployment to AD devices. To use this feature, use on-premise EMS instead of FortiClient Cloud.

 

 https://docs.fortinet.com/document/forticlient-cloud/22.1.0/cloud-deployment/384234/limitations-of-forticlient-cloud

3 replies

Anthony_E
Staff
Staff
August 11, 2022

Hello Brianolo,

 

Thank you for using the Community Forum.

I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.

 

Regards,

Best Regards
Anthony_E
Staff
Staff
August 11, 2022

Hello Brianolo,

 

Could you please tell me if this documention is helping?:

 

https://docs.fortinet.com/document/forticlient/7.0.1/ems-administration-guide/123277/adding-endpoints-using-an-ad-domain-server

 

Regards,

Best Regards
Brianolo
BrianoloAuthor
New Member
August 11, 2022

Thanks Anthony!

The documentation makes sense to me for an on-premise EMS deployment, but I'm not sure how I'd apply this to a cloud deployment.

 

Brian

 

Brianolo
BrianoloAuthorAnswer
New Member
August 11, 2022

I think I found the answer to my question. 

 

FortiClient Cloud does not currently support initial FortiClient deployment to AD devices. To use this feature, use on-premise EMS instead of FortiClient Cloud.

 

 https://docs.fortinet.com/document/forticlient-cloud/22.1.0/cloud-deployment/384234/limitations-of-forticlient-cloud

Anthony_E
Staff
Staff
August 11, 2022

Hello,

 

Ha yes!

 

That is why the document I found was specifying EMS.

 

Regards,

Best Regards