FortiGate – Identity Management, ZTNA & FSSO Architecture (FORTI4)

Networking, Fortinet

Designed as a hands-on workshop for advanced FortiGate administrators, this course focuses on real-world scenarios for authentication, identity management, ZTNA and FSSO, letting you deploy, integrate and test these technologies within complex security infrastructures.

This workshop is 0% theory and 100% labs: you will configure LDAP, RADIUS, Microsoft Entra ID, 2FA, FSSO agents, FortiAnalyzer, BGP, SD-WAN, EMS policies, ZTNA tags, VPN profiles and Explicit Web Proxy to gain hands-on skills, learn component interactions and practice real-world troubleshooting.

THIS TRAINING COURSE WILL HELP YOU:

  • Implement advanced authentication: LDAP, RADIUS and Microsoft Entra ID
  • Configure multi-factor authentication (2FA) for secure access
  • Design and deploy multi-VDOM setups integrated with FortiAnalyzer
  • Deploy and troubleshoot Fortinet Single Sign-On (FSSO) and agents
  • Use FortiClient EMS, ZTNA tags and manage VPN profiles centrally

WHO SHOULD ATTEND?

  • Network administrators and engineers for security infrastructure
  • Security specialists focused on identity and Zero Trust
  • System architects designing large-scale Fortinet solutions
  • IT professionals seeking hands-on FortiGate lab experience

COURSE LOCATION AND AVAILABLE DATES



Choose whether to attend in person in our classroom or join online. You can select your preferred format during registration. Learn more about hybrid training.

Public courses are usually delivered in Czech, but this course is also available in English. We can arrange private training for your team online, at your premises or in our classrooms, and tailor the content to your needs.

For groups of around 4 or more participants, private training can already be comparable in price to booking individual places on a public course. Send us your requirements and we’ll recommend the best format and provide an exact quote.

Request training in English

Course content:

Hide details
  • Authentication and access security
    1. LDAP and RADIUS integration
    2. Multi-factor authentication (2FA) setup
    3. Integration with Microsoft Entra ID
    4. Interface access protection (Local-in policy)
  • Advanced architecture and logging
    1. Building multi-VDOM architecture and npu-vdom link
    2. FortiGate and FortiAnalyzer integration in multi-VDOM mode
  • Routing and network redundancy
    1. Basic BGP routing configuration
    2. Redundancy and failover testing
    3. Practical use of SD-WAN zones
  • Fortinet Single Sign-On (FSSO)
    1. Installing FSSO agent on domain controller (DC)
    2. Connecting to FortiGate and basic troubleshooting
    3. Using user identity in firewall policies
  • FortiClient EMS and ZTNA (Zero Trust)
    1. EMS basic setup and creating tag policies
    2. Connecting EMS to FortiGate
    3. Using device identity in firewall policies (ZTNA tags)
  • Central VPN management
    1. Configuring VPN profiles in EMS
    2. IPsec over TCP configuration using ZTNA tags
  • Explicit Web Proxy configuration and management
Prerequisites:
Familiarity with FortiGate administration at the FORTI1 level.
Recommended previous course:
FortiGate – Firewall Configuration and Management (FORTI1)
Schedule:
1 day (9:00-17:00)
Price per person:
392.00 € ( 474.32 € incl. 21% VAT)

Training and learning environment