Hi,
so what is the plan going forward with SSL VPN?
There is NO alternative to it for us as we are forced to use Port 443 for incoming connections due to restrictions in hotels.
IPSec: **bleep**s its pants when there are multiple connections from the same source ip, specially if there is another connection to a third party gateway involved from the same source.
ZTNA: Uses different Ports to 443 so unusable.
WebVPN: Heap of Trash and does not work at all with locally installed software that needs to communicate with a server.
And due to NIS2 (European IT Security Safety Laws) beeing in place now we basically have a 4 month old, 100k$ doorstop with 4 1/2 years support on it left as the fortigate is not updateable.
Hi
ZTNA port is customizable. You can use 443 as well.
ZTNA is not usable due to other restrictions as well.
We can not force external support companies to install a ztna client provided by and managed by us.
You are right about this.
For external companies I think your best option is PAM.
PAM is no solution. Access has to be provided directly from the PC somebody is working at to our servers. VPN is the only solution here unfortunatelly.
User | Count |
---|---|
2559 | |
1356 | |
795 | |
650 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.