Hello,
I'm about to configure Agentless access to private applications through FortiSASE for contractors, however, I read that it's required to Enable SSO authentication for SWG users, which needs an integration with user database such as Azure AD, without that Agenteless ZTNA cannot be configured (as I understand it right now).
I already enabled SWG, created the SWG policies required, and have a local user group created, but this SWG SSO authentication is making things though.
Is there any way to bypass this and use only the local database (fortisase database, coupled with MFA, why not). Or it works just like that and there is now way to do it differently ?
Thank you in advance
Hello @Flamby
I believe its not possible with local user, however you can use the Radius or LDAP auth with SWG.
This 4D doc for SWG would be helpful for you : https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/260f235d-c520-11ee-8c42-fa163e...
Hello @sharmar
Thanks for your reply,
so in case we don't have any LDAP, there is no other solution to make contractors work without impacting their computers ? I mean, I see only one solution, is installing the agent on their computers like a regular SSL vpn.
User | Count |
---|---|
2549 | |
1356 | |
795 | |
646 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.