Fortinet white logo
Fortinet white logo

Using the FortiNBI application

Using the FortiNBI application

The FortiNBI application allows users to monitor isolation status and change the FortiProxy IP address that the application is connected to when needed.

Status tab

The Status tab shows the statuses of several components.

Rating service

Status of the FortiNBI rating service.

When the status is Stopped, you can start the service by clicking the Start button. In other statuses, you can restart the service by clicking the Restart button.

Rating service connection

Status of the connection between the GUI and the FortiNBI rating service.

Rating server detection mode

Mode in which the FortiProxy detects the rating server IP address:

  • Automatic: The rating server IP address is resolved using the user's proxy settings.

  • Manual: The rating server IP address is manually configured with a custom FortiProxy IP address. In this mode, the client machine does not need to have a proxy configured.

Rating server

IP address of the rating server.

Isolator

Status of the isolator.

Settings tab

Use the Settings tab to configure Rating server detection mode, which can be one of the following:

  • Automatic: The rating server IP address is resolved using the user's proxy settings.

    In Automatic mode, the FortiNBI detects the rating server IP address using the following:

    • DNS WPAD

    • PAC URL

    • User's proxy configuration

    Note For DNS WPAD and PAC URL, you must set direct access to system.fortinbi.fortinet.com and proxy https://pacdetectproxy.fortinbi.fortinet.com to the FortiProxy with the configured FortiNBI profile. The web server must be configured to allow .pac files to be downloaded and specified using the MIME type application/x-ns-proxy-autoconfig in the Content-Type header.
  • Manual: Manually enter a custom FortiProxy IP address.

    Fortinet recommends that you use Automatic mode as much as you can. Use Manual mode only if an issue with automatic mode prevents the system from detecting the rating server IP address.
    • The client machine must have a proxy configured, which must match the IP address you configured in the FortiProxy.

    • The Defective Session option under Policy & Objects > Isolator Setting > Setting must be configured for the manual mode to work. Refer to step 6 in Configuring native browser isolation in FortiProxy for detailed instructions.

About tab

The About tab shows the version of FortiNBI that is installed.

To quit the FortiNBI application:

Clicking the Close button in the FNBI application window does not quit the application: it will still run in the background in the system tray. To stop the FortiNBI application and the isolator completely, right-click the Fortinet icon in the system tray and click Quit.

Using the FortiNBI application

Using the FortiNBI application

The FortiNBI application allows users to monitor isolation status and change the FortiProxy IP address that the application is connected to when needed.

Status tab

The Status tab shows the statuses of several components.

Rating service

Status of the FortiNBI rating service.

When the status is Stopped, you can start the service by clicking the Start button. In other statuses, you can restart the service by clicking the Restart button.

Rating service connection

Status of the connection between the GUI and the FortiNBI rating service.

Rating server detection mode

Mode in which the FortiProxy detects the rating server IP address:

  • Automatic: The rating server IP address is resolved using the user's proxy settings.

  • Manual: The rating server IP address is manually configured with a custom FortiProxy IP address. In this mode, the client machine does not need to have a proxy configured.

Rating server

IP address of the rating server.

Isolator

Status of the isolator.

Settings tab

Use the Settings tab to configure Rating server detection mode, which can be one of the following:

  • Automatic: The rating server IP address is resolved using the user's proxy settings.

    In Automatic mode, the FortiNBI detects the rating server IP address using the following:

    • DNS WPAD

    • PAC URL

    • User's proxy configuration

    Note For DNS WPAD and PAC URL, you must set direct access to system.fortinbi.fortinet.com and proxy https://pacdetectproxy.fortinbi.fortinet.com to the FortiProxy with the configured FortiNBI profile. The web server must be configured to allow .pac files to be downloaded and specified using the MIME type application/x-ns-proxy-autoconfig in the Content-Type header.
  • Manual: Manually enter a custom FortiProxy IP address.

    Fortinet recommends that you use Automatic mode as much as you can. Use Manual mode only if an issue with automatic mode prevents the system from detecting the rating server IP address.
    • The client machine must have a proxy configured, which must match the IP address you configured in the FortiProxy.

    • The Defective Session option under Policy & Objects > Isolator Setting > Setting must be configured for the manual mode to work. Refer to step 6 in Configuring native browser isolation in FortiProxy for detailed instructions.

About tab

The About tab shows the version of FortiNBI that is installed.

To quit the FortiNBI application:

Clicking the Close button in the FNBI application window does not quit the application: it will still run in the background in the system tray. To stop the FortiNBI application and the isolator completely, right-click the Fortinet icon in the system tray and click Quit.