Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
SyslaGrimm
New Contributor

ZTNA FQDN Off-fabric

Hello fellas, I've hit a snag trying to configure ZTNA to work with FQDN and I can't really seem to understand why.

Firstly I'll state that the configuration works when using IP addresses but when changing the IP address to a FQDN it just doesn't work.

the FQDN are configured on both the 'ZTNA Destinations' on the EMS server and the ZTNA Server on the FW there's a FQDN entry that resolves to the internal IP, I've also tried specifying the Virtual host and directing to the IP which also didn't work, I feel like I'm missing something along the way.

Thanks in advance.

1 Solution
AEK
SuperUser
SuperUser

Hello

  • Which EMS, FCT and FOS versions?
  • Can your EMS & FOS do DNS resolution for the internal addresses?
AEK

View solution in original post

AEK
2 REPLIES 2
AEK
SuperUser
SuperUser

Hello

  • Which EMS, FCT and FOS versions?
  • Can your EMS & FOS do DNS resolution for the internal addresses?
AEK
AEK
SyslaGrimm
New Contributor

Thank you for that, I was missing something, although the FW did resolve when creating a FQDN-entry on the targeted interface it did not resolve on the firewall level, creating a DNS Database and adding entries and directing the EMS server to the same DNS database helped resolve the issue.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors