Description | This article describes what are the downsides of using SSL VPN web mode compared to tunnel mode. |
Scope | FortiGate v6.4.X, v7.0.X, v7.2.X, v7.4.X. |
Solution |
Some years ago most of the web pages were using static HTML. It is relatively straightforward to locate the URL link in static HTML pages and replace/modify it with a pre-defined domain name and URL prefix.
That makes it more difficult to locate the URL in the returned page from HTTPS servers.
The way to get out of this situation and avoid any future problems:
ZTNA access proxy allows users to securely access resources through an SSL-encrypted proxy. This makes remote access much easier by eliminating the use of any sort of VPN tunnel.
In addition to that, the ZTNA rules add a level of security and posture checking. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.