Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
R_F
Contributor

ZTNA inspection from LAN to DMZ

Dear Folks,

 

Seeking an ideal setup on how to enforce ZTNA for the segmented network. Let's say, I have my LAN users traffic destined for my DMZ or server farm that must be inspected by FG firewall policy with ZTNA parameters before the target resources become reachable.

 

any helpful insight is much appreciated.

4 REPLIES 4
Anthony_E
Community Manager
Community Manager

Hello R_F,

 

Thank you for using the Community Forum.

I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.


Regards,

Anthony-Fortinet Community Team.
Anthony_E
Community Manager
Community Manager

Hello,

 

We are still looking for someone to help you.

We will come back to you ASAP.


Regards,

Anthony-Fortinet Community Team.
Anthony_E
Community Manager
Community Manager

Hello,

 

do you maybe have a contact to your regional TAC team?

They should maybe help you.

 

Regards,

Anthony-Fortinet Community Team.
pminarik
Staff
Staff

Hi R_F,

For internal endpoints, IP/MAC-based access control should be a good match. Have a look at the doc for it - https://docs.fortinet.com/document/fortigate/7.0.9/administration-guide/477578/ztna-ip-mac-based-acc...

[ corrections always welcome ]
Labels
Top Kudoed Authors