Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
AEK
SuperUser
SuperUser

ZTNA tags with IPsec

Hello

I see in admin guide that ZTNA tags can be with with SSL VPN to filter the traffic based on tags, but I don't find the same with dialup IPsec VPN.

Is it officially supported?

AEK
AEK
1 Solution
Sx11
Staff
Staff

Hello AEK,

 

yes this should work also for IPSEC VPN.

 

Following doc confirms it:

https://docs.fortinet.com/document/fortigate/7.2.6/administration-guide/735065/augmenting-vpn-securi...

 

Enterprise Core is the FortiGate that acts as the SSL VPN server. To configure SSL VPN, refer to SSL VPN and SSL VPN security best practices. Critical Assets are network resources that the off-net user tries to access after connecting to the VPN. SSL VPN is used in this example, but a similar configuration also applies to dialup IPsec VPN where the FortiGate acts as a dialup server.

sx11

View solution in original post

2 REPLIES 2
Sx11
Staff
Staff

Hello AEK,

 

yes this should work also for IPSEC VPN.

 

Following doc confirms it:

https://docs.fortinet.com/document/fortigate/7.2.6/administration-guide/735065/augmenting-vpn-securi...

 

Enterprise Core is the FortiGate that acts as the SSL VPN server. To configure SSL VPN, refer to SSL VPN and SSL VPN security best practices. Critical Assets are network resources that the off-net user tries to access after connecting to the VPN. SSL VPN is used in this example, but a similar configuration also applies to dialup IPsec VPN where the FortiGate acts as a dialup server.

sx11
AEK

Thanks Sx11.

I was checking on the same page but haven't seen this paragraph before now.

 
AEK
AEK
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors