Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
jcapablanca
New Contributor

Contractor (Agentless) access to Private resource using ZTNA

Team,

 

I have all the required licensing for FortiSASE (advanced, SPA etc) and have a requirement to provide access to private resources (RDP) for contractors (non-managed devices).

 

Before I go down this route, is this a supported configuration using agentless ZTNA? Or am I better placed to leverage a different solution?

TIA.

Justin.

 

JC
JC
1 Solution
Hostingmella
New Contributor II

Yes, FortiSASE with agentless ZTNA is a supported configuration for providing contractor access to private resources, including RDP. With agentless ZTNA, you can securely grant access to non-managed devices without needing to install an agent. However, it’s important to ensure that your configuration includes the necessary policies for secure access, such as conditional access controls and MFA, to protect sensitive resources. If you’re unsure, it might be worthwhile to evaluate additional solutions, but FortiSASE should be effective if configured properly.

View solution in original post

4 REPLIES 4
Hostingmella
New Contributor II

Yes, FortiSASE with agentless ZTNA is a supported configuration for providing contractor access to private resources, including RDP. With agentless ZTNA, you can securely grant access to non-managed devices without needing to install an agent. However, it’s important to ensure that your configuration includes the necessary policies for secure access, such as conditional access controls and MFA, to protect sensitive resources. If you’re unsure, it might be worthwhile to evaluate additional solutions, but FortiSASE should be effective if configured properly.

jcapablanca

Thanks so much for replying so quickly that this is supported.

 

Absolutely agree - regarding the additional policies/functions for securely protecting the organisation.

 

 

JC
JC
jcapablanca

Hi @Hostingmella - do you have workflows to describe the setting up of this and any software version dependencies for FortiIOS and FortiSASE?

JC
JC
jcapablanca

Hi Nick, other options outside of ZTNA such as good ol VPN client? Or using FortiSASE, but doing it differentlly?

JC
JC
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors