Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
alaaelrayes
New Contributor III

ZTNA policy issue on Mac's devices

Hello,

 

I encountering an issue while applying policy on Mac devices.

The policy is to block devices that don't have FileVault enabled when connecting whether from VPN or internal network.

My issue is that I can connect to the VPN and internal network while the device tag is non compliant.

Note that I can apply policies on Windows devices.

Please I appreciate your help.

Thanks.

FortiClient 

 

Mac issue 3.JPG

1 Solution
alaaelrayes
New Contributor III

Hi all,  After contact Fortinet support, they confirmed that  Mac and Linux don't support this feature according to the below documentation under Tag:

 

https://docs.fortinet.com/document/forticlient/7.2.1/ems-administration-guide/29925/ssl-vpn

View solution in original post

6 REPLIES 6
alaaelrayes
New Contributor III

Any suggestion ?

vsahu
Staff
Staff

Hello alaaelrayes,

Can you share the endpoint tag snapshot from the client and the ZTNA policy that you've configured on the FortiGate?

 

Regards,
Vishal
vsahu

There's a known issue with 7.0.7 macOS forticlient 805201, it is fixed in 7.2.0 and later
https://docs.fortinet.com/document/forticlient/7.0.7/macos-release-notes/124818/known-issues

Let me know which forticlient version you're using.

Regards,
Vishal
alaaelrayes
New Contributor III

I'm using 7.2.1 forticlient ZTNA and EMS also

alaaelrayes
New Contributor III

The configuratons on EMS

 

VPN issue 1.JPGVPN issue 3.JPGVPN issue 4.JPG

alaaelrayes
New Contributor III

Hi all,  After contact Fortinet support, they confirmed that  Mac and Linux don't support this feature according to the below documentation under Tag:

 

https://docs.fortinet.com/document/forticlient/7.2.1/ems-administration-guide/29925/ssl-vpn

Labels
Top Kudoed Authors