Hello, I have a Fortigate policy whereby I want to specify that a user has to belong to TWO user groups in order to pass the policy.
However, I am finding that the user only needs to match one group, but I want BOTH groups to be matched.
Is there any way to do this ?
Thank you.
Hello douglas1942,
this is not supported as you intended to use it. The behavior you're seeing is expected.
You will need to create a new user group specific for those users and use it in your FW policies.
HTH,
Boris
Thank you. Does anyone have any ideas how to achieve what I want ?
You can submit a New Feature Request via your local Fortinet Sales Engineer and ask to have a logical AND group-match option added into FortiOS.
User | Count |
---|---|
144 | |
71 | |
64 | |
42 | |
37 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.