Skip to main content
subscriptions
New Member
March 14, 2020
Question

Restrict FortiClient sign-in to domain machines

  • March 14, 2020
  • 0 replies
  • 2199 views

Hi,

 

I have an Active Directory environment with Windows and Apple laptops joined to the domain (test.loc for example).

SSL VPN is configured in a way to accept connection if the client has the certificate issued by local CA.

So far so good.

What I want to achieve is that if SSL VPN connection is coming from not domain joined machine (Windows and Apple laptops), SSL VPN connection to not be allowed.

I found few articles related to how to do host-check using AV or registry check for Windows, but cannot make it work for Windows and Apple laptops at the same time.

 

Thanks in advance.

 

BR,

Stan

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!