Hi.i'm doing a poc on forticlient ems for the purpos on using it as
remote ipsec vpn and ztna.I'm having problems with the vpn part.right
now iv don't the vpn before login (auto part) with the machine
certificate and that works fine and when i log in...
Hi. Got some Q about forticlient EMS.We are using windows allways on vpn
right now (not my choise) and would like Forticlient because of the VPN
and ZTNA thing.So can the Forticlient vpn in IPSEC mode use the computer
certificate before login so the ...
Hi.We are using Cisco ISE with the pxgrid connector to fortimanager and
that works fine.but need to create fortigate policies with a user on
both source and destination cause our cisco sda uses /19 subnets and
seperated with sgt tags (pxgrid).But whe...
Hi.we are running Cisco SDA/DNA on our infrastruktur and a Fortigate a
our firewall. Got the Cisco ISE and fortimanager pxgrid working with no
problem, but before i got the pxgrid connector iv had Fortinet FSSO dc
agent on your DC's and a FSSO server...
Hi.The cert switching is that the autoconnect_tunnel?Got the Mach tunnel
as on_os_start_connect and the user tunnel as autoconnect_tunnel and the
on_os_start_connect_has_prio = 0Is it each tunnel timeout you want?
Hi your a lifesaver, works like a charme. Also better this way, then i
dont need a ip subnet on the src and dst, the dynamic adress with the
fsso/pxgrid group works.thx
Yeah i know, but my question was if i could use both? right now i only
get the pxgrid group in the logs, and not the user, så all my logs for a
pxgrid network is from the same FSSO user.And now im not able to make
userbased policies with ad groups.