This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

I want to provide Active directory acces through ZTNA gateway.

Hi!

I want to provide Active directory access through ZTNA gateway.

Is it possible to add port ranges to a ZTNA resource?

And do I need to use the External FQDN anywhere at the domain member ? Where?

Is it possible to use just "domain.local" for "internal FQDN" if using multiple domain controller?



This thread was automatically locked due to age.

Top Replies

  • You should consider to move to Azure AD for your internal domain.

    There are certain benefits in doing so. ZTNA will not replace your VPN, if you still stick on the entire AD on Premise Stack. 

    Jump to answer
Parents
  • I am also looking for a VPN replacement and was hoping to use ZTNA to redirect AD traffic for domain.local through the ZTNA gateway to the on-prem AD server. Is this possible?

    My other option is just to deploy Windows Always-On VPN.

  • That is actually not the use case of a ZTNA Product. ZTNA would likely have a Azure AD in place. Azure AD has it own mechanism to sync data to a client. 
    A ZTNA product is to keep the rest connected. 

    __________________________________________________________________________________________________________________

Reply
  • That is actually not the use case of a ZTNA Product. ZTNA would likely have a Azure AD in place. Azure AD has it own mechanism to sync data to a client. 
    A ZTNA product is to keep the rest connected. 

    __________________________________________________________________________________________________________________

Children
No Data