Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
mmega
New Contributor

FortiClient EMS without Domain / Azure Sync

Hi,

I am testing FortiClient EMS and was thinking about if I even need connection to AD or Entra.

My goal is deploying on our 50 company devices. I did create an installer which is accessable from LAN only and deploy it via a third party tool.

So I do not really see any benefits / needs for adding a connection to Entra... Later on we want to switch to ZTNA - do I need a Entra connection for user authentication for this?

https://19216811.cam/ https://1921681001.id/
2 REPLIES 2
spoojary
Staff
Staff

for your current deployment scenario and future ZTNA transition, the need for an Entra ID connection for user authentication may not be mandatory. Evaluate your authentication requirements for ZTNA and align them with your deployment strategy

Siddhanth Poojary
ozkanaltas
Valued Contributor III

Hi @mmega ,

 

If you are not going to use a tag such as "Is this user in this group" within the ztna tags, it seems that you do not need to provide a link with the name.

 

For authentication on the ZTNA side, you need to integrate SAML with Azure AD on FortiGate. Something completely independent of EMS.

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW
If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors