Hello everyone,
I've a doubt about the Explicit Proxy feature, I hope someone can help me with this.
I've configured 2 FGT in HA and then installed the FSSO in Agent (standard mode) on both the Domain Controllers in the infrastructure.
Then, I configured the FSSO Agent via GUI in the Security Fabric Menu adding both the two Domain Controllers, synched the AD Groups and then configured the IPv4 Policy adding the FSSO AD group permitted and enabling the Web Filtering option so I can block unpermitted web sites category.
In this way all the not authenticated users (non AD users) are redirected to the Fortigate portal where the can type the temporary credentials.
So, my questions are:
- do I need to enable the explicit proxy?
- which are the advantages I can get by enabling it?
- I do not need to chenge the user's browser setting in the way I did and I think I can manage everything but...If the explicit proxy exists there will be a reason. Please, can you help to understand it? I'm reading the Fortigate KB but I can't catch the sense.
Thanks in advance
Luke
Solved! Go to Solution.
Is there a reason you want to use Explicit over Transparent ?
Search the forum. Believe these questions covered by members in previous posts.
Example: https://forum.fortinet.com/tm.aspx?m=151025
Hello isamt,
thanks for your reply.
Luke
Is there a reason you want to use Explicit over Transparent ?
Hello Kubimike,
I'm sorry for the delay of my reply.
The reason is that I can't understand the defference between the method I used and the explicit proxy (if there are some advantagees or not).
Then, I've seen that the transparent proxy is another solution but I'd like to clearly understand the difference between the explicut proxy.
Thanks
 
					
				
				
			
		
| User | Count | 
|---|---|
| 2678 | |
| 1412 | |
| 810 | |
| 703 | |
| 455 | 
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.