Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
nithishkumar
New Contributor II

SSL VPN users access multiple policy but we mentioned particular access

Hi Team,

 

We are currently using FortiOS version 7.2.8 for our network security needs. Recently, we have encountered an issue with our SSL VPN users. Despite specifying particular policies for these users, they are able to access other policies as well, which is not the intended behavior.

Our SSL VPN users authenticate through FortiAuthenticator for Multi-Factor Authentication (MFA). The expected outcome is that they should only have access to the resources defined in their specific policies.

 

 

If you have any idea about this case please share it.

I need help on this

 

@nithish.k@snsin.com #fortigate#fortiauthenticator

 

Nithishkumar S
Nithishkumar S
2 REPLIES 2
funkylicious
SuperUser
SuperUser

Hi,

Is it possible that the users are part of multiple groups and when they auth they match a lower auth rule for group/policy and this way access other resources ?

"jack of all trades, master of none"
"jack of all trades, master of none"
hbac
Staff
Staff

Hi @nithishkumar,

 

Can you show the policies? 

 

Regards, 

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors