| Description | This article explains the change that needs to be made on the FortiGate for communication towards Microsoft Intune using the ISDB objects. |
| Scope | FortiGate ISDB objects. |
| Solution |
Microsoft has announced that the network service endpoints for Microsoft Intune will use Azure Front Door IP addresses from December 2nd of 2025. Currently, FortiGate has an ISDB object 'Microsoft-Intune' which can be used in policy to control the communication towards Microsoft Intune services.
The administrator needs to add the newly created ISDB object 'Microsoft-Azure.Front.Door.MicrosoftSecurity', along with the ISDB object 'Microsoft-Intune', in the security policy, to control the communication towards Microsoft Intune. The ISDB object 'Microsoft-Azure.Front.Door.MicrosoftSecurity' is available only in FortiOS version 7.2 onwards.
config firewall internet-service-name
Related documents: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.