Palo Alto Settings
Create VPN Tunnel to Be Managed
Configure the VPN tunnel per Palo Alto documentation.
Dynamic Address Groups (DAGs)
Configure the Dynamic Address Groups (DAGs) to be used in Palo Alto policies.
Add tags to the appropriate DAGs. Tags must match those configured in FortiNAC.
Example:
DAGs called “VPN Full Access” and “VPN Restricted”
The “VPN Full Access” DAG has a single member tag called “VPN_FULL_ACCESS”