Special notices
Do not enable server certificate validation
On the EMS, do not enable the server certificate validation for ZTNA.
Check Endpoint Profiles > ZTNA Destinations on the EMS to ensure that the certificate validation is disabled as shown below:
<disallow_invalid_server_certificate>0</disallow_invalid_server_certificate>
Allow pop up windows on Firefox
When launching web applications on the Firefox browser, allow pop up windows.
HA and DR essential
Setting up High Availability (HA) and Disaster Recovery (DR) are essential for system protection. This is important in case of power outages or other unexpected events.
With the introduction of the new floating license feature, HA and DR setups are affordable and flexible.
Web proxy CA certificate
When launching public websites, FortiPAM uses the selected CA certificate to re-sign the public websites.
When launching private websites, FortiPAM will use untrusted CA to re-sign the private websites.
Client software
Before upgrading to FortiPAM 1.7.2, check if there is a software in Secret Settings > Client Software. If yes, reduce the Video Storage Limit / File Storage Limit (in the Advanced tab in System > Settings) to allow uploading software from a USB disk (/data2/pkg) to the video disk.
After upgrading to FortiPAM 1.7.2, adjust the storage limit in the Advanced tab in System > Settings.
FortiPAM not compatible with FortiClient EMS 7.4.5
FortiPAM 1.7.2 is not compatible with FortiClient EMS version 7.4.5 GA.