Fortinet black logo

Administration Guide

Creating ZTNA tag groups

Creating ZTNA tag groups

Note

Before you can create ZTNA tags and tag groups, ZTNA Tag must be enabled in the Display Options.

To create a ZTNA Tag Group:
  1. Go to Object Configurations > Firewall Objects > ZTNA Tag, and click Create New.
    The Create New ZTNA Tag Group window opens.
  2. Enter a name for the group.
  3. Select a ZTNA Tag type from one of the following:
    • EMS
    • Geographic IP
  4. Select Members to add to the ZTNA tag group.
    • When configuring an EMS tag group, members are configured in Policy & Objects > Object Configurations > Firewall Objects > ZTNA Tag with a IP or MAC object type. See Creating ZTNA tags.
    • When configuring a Geographic IP tag group, members are configured in Policy & Objects > Object Configurations > Firewall Objects > Addresses as a Firewall Address with the Type set as Geography. See Creating ZTNA geographic IP objects.
  5. Click OK to save the group.
    The ZTNA tag group can now be selected in a Firewall Policy with ZTNA > IP/MAC filtering enabled.

Creating ZTNA tag groups

Note

Before you can create ZTNA tags and tag groups, ZTNA Tag must be enabled in the Display Options.

To create a ZTNA Tag Group:
  1. Go to Object Configurations > Firewall Objects > ZTNA Tag, and click Create New.
    The Create New ZTNA Tag Group window opens.
  2. Enter a name for the group.
  3. Select a ZTNA Tag type from one of the following:
    • EMS
    • Geographic IP
  4. Select Members to add to the ZTNA tag group.
    • When configuring an EMS tag group, members are configured in Policy & Objects > Object Configurations > Firewall Objects > ZTNA Tag with a IP or MAC object type. See Creating ZTNA tags.
    • When configuring a Geographic IP tag group, members are configured in Policy & Objects > Object Configurations > Firewall Objects > Addresses as a Firewall Address with the Type set as Geography. See Creating ZTNA geographic IP objects.
  5. Click OK to save the group.
    The ZTNA tag group can now be selected in a Firewall Policy with ZTNA > IP/MAC filtering enabled.