Skip to main content
Jaw_INFO
New Member
October 14, 2024
Question

SSL VPN for iOS with certificate only authentication

  • October 14, 2024
  • 1 reply
  • 719 views

Dear Fortinet Community,

 

we are implementing JAMF right now as our MDM solution.

 

With this we also want to create a SSL VPN for our mobile devices.

 

We already use SSL VPN Portals for our notebooks and work there with a certificate and LDAP authentication.

 

For our mobile devices we want a certificate only authentication but it is not clear for me how the Fortigate should know in which Portal the mobile devices get because normally it works with the user groups from LDAP.

 

As a VPN Client for the mobile devices we would like to use FortiClient. 

 

Do you have any best practices for this scenario?

 

Thanks in advance.

 

Kind Regards,

Jan

1 reply

johnathan
Staff
Staff
October 14, 2024

Technically when you set up authentication via Certificate, that is a different user group than LDAP.

That would be assignable to whatever portal you want. See this document: https://docs.fortinet.com/document/fortigate/7.6.0/administration-guide/266506/ssl-vpn-with-certificate-authentication

Never trust a computer you can't throw out a window.
Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!