Skip to main content
martin28
New Member
May 18, 2022
Question

ZTNA Tags and policies

  • May 18, 2022
  • 2 replies
  • 1799 views

Hello,

I have succesfully connected EMS and FGT. I can see tags (populated with correct IPs), everything seems fine. BUT, when configuring the IPv4 policy with the ZTNA tag, traffic will not match this policy even though the resolved IP is correct. Traffic keeps matching the implicit deny policy.

Has anyone got away with this? Seems like a bug, I have a remote session scheduled but still would like to know if someone has this scenario working.

FGT is in 7.0.5, FC is 7.0.5 and FC EMS is in 7.0.4 (latest versions).

 

Best regards.

2 replies

akristof
Staff
Staff
May 19, 2022

Hello,

Thank you for your question. This is a bug - 770877. It will be fixed in 7.0.6 (FortiOS).

peisenberg
Staff
Staff
September 5, 2022

hello @martin28 

Could you please check with latest version of FCT EMS and FGT  (7.0.7/7.0.7/7.0.6 ) ?


Pavol