Skip to content Skip to navigation Skip to footer

Universal Zero Trust Network Access (ZTNA)

Fortinet recognized as a Leader on the GigaOm Radar for Zero-Trust Network Access (ZTNA). 

Download Report
Universal Zero Trust Network Access (ZTNA) banner background banner dots


What is ZTNA?

ZTNA is a capability within Zero Trust Access (ZTA) that controls access to applications. It extends the principles of ZTA to verify users and devices before every application session. ZTNA confirms that they meet the organization’s policy to access that application.

Watch Now

Fortinet Universal ZTNA

Watch how FortiClient, FortiClient EMS, FortiOS ZTNA Application Gateways and FortiAuthenticator work together to enable Zero Trust for your organization.

Watch Now
Diagram depicting Fortinet's Universal Zero Trust Network Access architecture. The Universal ZTNA architecture connects users from any location (including campus, branch, and remote locations) to applications in any location (including public clouds, private clouds, and data centers). These connections are controlled by passing through the FortiGate Operating System, which is acting as the ZTNA Application Gateway. The ZTNA Application Gateway is managed by a central policy, for consistent security for all locations.

Fortinet brings Universal ZTNA to the Fortinet Security Fabric

Our unique approach, delivering Universal ZTNA as part of our FortiGate Next-Generation Firewall (NGFW) makes it uniquely flexible, covering users when they are remote or in the office. Universal ZTNA capabilities are automatically enabled on any device or service running FortiOS 7.0 and higher. This includes hardware appliances, virtual machines in clouds, and the FortiSASE service.

A FortiGate and the FortiClient ZTNA agent are all that’s needed to enable more secure access and a better experience for remote users, whether on or off the network.

Learn More

Zero trust can be a confusing term due to how it applies across many technologies

This guide clarifies in simple terms what you need to know about Zero Trust Access plus business benefits of a Zero Trust Access solution.


Fortinet recognized as a Leader on the GigaOm Radar for Zero-Trust Network Access (ZTNA)

Fortinet is recognized for its Universal ZTNA solution that is integrated into the FortiOS operating system. It provides rapid deployment and the lowest TCO while offering cloud-based, on-premises, and SASE options. 

Read the GigaOm Radar Report for Zero-Trust Network Access (ZTNA) to learn more about ZTNA and how Fortinet has been recognized for its growing contributions to the market.


To reach our technical library for information about ZTNA configuration, click here


View by:

Features and Benefits

Flexible Deployment

Enables ZTNA policies to be enforced for both remote workers and on-campus workers

Granular Access Control

Grants access to a specific application only for that session

Ongoing verification

Verifies the user identity, the device identity, device posture, and the user’s right to access an application before granting access to an application

Client-Initiated Model

Provides more visibility and control of the endpoint for the IT team while providing the user a faster, easier experience

No Extra Cost

Requires no additional licenses.
Fortinet’s ZTNA is a free feature in FortiOS and FortiClient, enabling customers to shift from
VPN to ZTNA at their own pace

Automatic Encrypted Tunnels

Creates TLS-encrypted tunnels automatically, from the endpoint to the access proxy, ensuring traffic is hidden from prying eyes

Use Cases

Legacy VPNs cannot provide the flexibility or level of security required for today’s dynamic networks and workers. ZTNA solves VPN shortcomings, making it the ideal solution for the following use cases: