Fortinet black logo

Using the FortiNBI application

Using the FortiNBI application

The FortiNBI application allows users to monitor isolation status and change the FortiProxy IP address that the application is connected to when needed.

Status tab

The Status tab shows the statuses of several components.

Rating service

Status of the FortiNBI rating service.

When the status is Stopped, you can start the service by clicking the Start button. In other statuses, you can restart the service by clicking the Restart button.

Rating service connection

Status of the connection between the GUI and the FortiNBI rating service.

Rating server detection mode

Mode in which the FortiProxy detects the rating server IP address:

  • Automatic: The rating server IP address is resolved using the user's proxy settings.

  • Manual: The rating server IP address is manually configured with a custom FortiProxy IP address. In this mode, the client machine does not need to have a proxy configured.

Rating server

IP address of the rating server.

Isolator

Status of the isolator.

Settings tab

Use the Settings tab to configure Rating server detection mode, which can be one of the following:

  • Automatic: The rating server IP address is resolved using the user's proxy settings.

    In Automatic mode, the FortiNBI detects the rating server IP address using the following:

    • DNS WPAD

    • PAC URL

    • User's proxy configuration

    Note For DNS WPAD and PAC URL, you must set direct access to system.fortinbi.fortinet.com and proxy https://pacdetectproxy.fortinbi.fortinet.com to the FortiProxy with the configured FortiNBI profile. The web server must be configured to allow .pac files to be downloaded and specified using the MIME type application/x-ns-proxy-autoconfig in the Content-Type header.
  • Manual: Manually enter a custom FortiProxy IP address. In this mode, the client machine does not need to have a proxy configured. However, you must ensure that the Defective Session option under Policy & Objects > Isolator Setting > Setting is configured for the manual mode to work. Refer to step 6 in Configuring native browser isolation in FortiProxy for detailed instructions.

    Note Fortinet recommends that you use Automatic mode as much as you can. Use Manual mode only if an issue with automatic mode prevents the system from detecting the rating server IP address.

About tab

The About tab shows the version of FortiNBI that is installed.

To quit the FortiNBI application:

In the system tray, right-click the Fortinet icon and click Quit to stop the FortiNBI application and the isolator.

Using the FortiNBI application

The FortiNBI application allows users to monitor isolation status and change the FortiProxy IP address that the application is connected to when needed.

Status tab

The Status tab shows the statuses of several components.

Rating service

Status of the FortiNBI rating service.

When the status is Stopped, you can start the service by clicking the Start button. In other statuses, you can restart the service by clicking the Restart button.

Rating service connection

Status of the connection between the GUI and the FortiNBI rating service.

Rating server detection mode

Mode in which the FortiProxy detects the rating server IP address:

  • Automatic: The rating server IP address is resolved using the user's proxy settings.

  • Manual: The rating server IP address is manually configured with a custom FortiProxy IP address. In this mode, the client machine does not need to have a proxy configured.

Rating server

IP address of the rating server.

Isolator

Status of the isolator.

Settings tab

Use the Settings tab to configure Rating server detection mode, which can be one of the following:

  • Automatic: The rating server IP address is resolved using the user's proxy settings.

    In Automatic mode, the FortiNBI detects the rating server IP address using the following:

    • DNS WPAD

    • PAC URL

    • User's proxy configuration

    Note For DNS WPAD and PAC URL, you must set direct access to system.fortinbi.fortinet.com and proxy https://pacdetectproxy.fortinbi.fortinet.com to the FortiProxy with the configured FortiNBI profile. The web server must be configured to allow .pac files to be downloaded and specified using the MIME type application/x-ns-proxy-autoconfig in the Content-Type header.
  • Manual: Manually enter a custom FortiProxy IP address. In this mode, the client machine does not need to have a proxy configured. However, you must ensure that the Defective Session option under Policy & Objects > Isolator Setting > Setting is configured for the manual mode to work. Refer to step 6 in Configuring native browser isolation in FortiProxy for detailed instructions.

    Note Fortinet recommends that you use Automatic mode as much as you can. Use Manual mode only if an issue with automatic mode prevents the system from detecting the rating server IP address.

About tab

The About tab shows the version of FortiNBI that is installed.

To quit the FortiNBI application:

In the system tray, right-click the Fortinet icon and click Quit to stop the FortiNBI application and the isolator.