Rule Logic Example
The following provides an example to assign a specific tag to Windows endpoints when following conditions are true:
-
Windows Firewall is turned off.
-
Antivirus (AV) is not running.
-
AV signature definitions are not up to date
FortiSASE-Sovereign applies an AND logic for tagging rules under one security posture tag.
Considerations
-
Using security posture tags for Secure Internet Access policies is recommended to control granular application access based on security posture. With this usage, it is recommended that an allow-all policy remains in place to allow general internet traffic for all users.