A customer looking to secure API calls to their Control server between standard "Trusted Users" vs "Super Trusted Users". "Super Trusted Users" will only connect from their On-prem locations. They like the idea of ZTNA access proxy and FortiClient Posture checks/policy to allow "Super Trusted Users" to have the ability to make any API call to the control server and limit the API calls from the standard "Trusted users".
If we place a FortiGate VM in their AWS cloud before the Control Server, can the ZTNA Access Proxy differentiate API calls (via URL or something else) or will they need to use a FortiWeb API Gateway or spin up another API Gateway for each level of access?
#ZTNA #EMS #FortiWeb
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Not famliar with AWS and APIs but can you restrict API access directly in FlightControl based on things like source IP?
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1547 | |
1031 | |
749 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.