- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Zero Trust Fabric Agent with proxy
Hello everyone,
In our environment we do have BYOD and Domain devices.
For the BYOD the connection of Zero Trust Fabric Agent with EMS is perfectly fine.
But we do have problems with the domain devices. Is there a way to tell the Zero Trust Fabric Agent to bypass dhe proxy that the endpoints have on their regedit ?
#FortiClient EMS #ZeroTrustFabricAgent
- Labels:
-
FortiClient EMS
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello
If I understand your request you want the domain devices not use the ZTNA proxy. In that you just need to create different policies, on for domain devices and one for others.
Then the policy for the domain devices should have ZTNA profile disabled.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
My request is not related to ZTNA but to the FortiClient.exe it self running on users endpoint. I managed to solve this using as a workaround the bypass proxy on the regedit by telling to bypass (proxy override) the following: C:\Program Files\Fortinet\FortiClient\FortiTray.exe
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
You can use ZTNA IP MAC based for your internal domain pcs.
This mode does not require the use of the access proxy, and only uses security posture tags for access control.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi, what i mean is the proxy on the desktop level. The machine requires proxy to connect to internet. When i install the Forticlient agent this one is forced through regedit to connect via proxy in order to go to internet. But when the machine is not in the LAN, logically cannot reach internet since it requires proxy. Is there a way to bypass proxy for forticlient.exe agent ?
![](/skins/images/EC12350B26E3A30E8BDB0075C9F4DA72/responsive_peak/images/icon_anonymous_message.png)