Fortinet black logo

Administration Guide

Configuring the FortiSASE security PoPs as the FortiGate hub's spokes

Copy Link
Copy Doc ID 4ed231bf-e303-11ee-8c42-fa163e15d75b:681281
Download PDF

Configuring the FortiSASE security PoPs as the FortiGate hub's spokes

Note Before configuring the Secure Private Access settings in the FortiSASE portal, to ensure proper secure private access (SPA) functionality, you must ensure that the FortiGate hub conforms to the deployment details (topologies, configuration settings) covered in the specific 4-D FortiSASE SPA deployment guide corresponding to your SPA use case as Prerequisites mentions.

To allow FortiSASE remote users with SPA to resources behind your FortiGate hub (FortiSASE SPA hub/FortiGate SD-WAN hub) network, you can configure FortiSASE security points of presence (PoP) as spokes in your hub-and-spoke network in Network > Secure Private Access.

Configuration workflow

To configure SPA service connections (hubs), you must follow this configuration workflow in Network > Secure Private Access:

  1. Click the Network Configuration tab at the top of the page and configure the common network configuration settings. See Configuring network configuration.

  2. Click the Service Connections tab at the top of the page, click Create, and configure a new service connection (hub). See Configuring a new service connection.

Note You cannot configure a service connection or hub without first configuring Network Configuration settings.

Configuring the FortiSASE security PoPs as the FortiGate hub's spokes

Note Before configuring the Secure Private Access settings in the FortiSASE portal, to ensure proper secure private access (SPA) functionality, you must ensure that the FortiGate hub conforms to the deployment details (topologies, configuration settings) covered in the specific 4-D FortiSASE SPA deployment guide corresponding to your SPA use case as Prerequisites mentions.

To allow FortiSASE remote users with SPA to resources behind your FortiGate hub (FortiSASE SPA hub/FortiGate SD-WAN hub) network, you can configure FortiSASE security points of presence (PoP) as spokes in your hub-and-spoke network in Network > Secure Private Access.

Configuration workflow

To configure SPA service connections (hubs), you must follow this configuration workflow in Network > Secure Private Access:

  1. Click the Network Configuration tab at the top of the page and configure the common network configuration settings. See Configuring network configuration.

  2. Click the Service Connections tab at the top of the page, click Create, and configure a new service connection (hub). See Configuring a new service connection.

Note You cannot configure a service connection or hub without first configuring Network Configuration settings.