Hi,
In FortiGate I blocked SSL traffic from outside the EU using local-in-policy. Now I would like to allow temporary access for a single AD user only, without enabling it for others.
What is the best way to implement such an exception? Which solution is supported by FortiGate?
Thanks in advance for your guidance!
I don't think it's possible because the local-in-policy filtering happens BEFORE remote user authentication with like AD or other auth servers.
First thing I can think of in the situation like yours, I would provide a FGT to the user and set up site-to-site VPN from the FGT to make the user's location as a remote office.
Toshi
User | Count |
---|---|
2534 | |
1351 | |
795 | |
641 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.