DescriptionBrand new iOS devices (iPads and iPhones) that require configuration hang after the initial greeting screens if they are in isolation. Configuration of these devices complete successfully if connected to the production network.SolutionInitial configuration of iOS devices require communication to various Apple sites on the internet. In order for this process to work while the device is isolated, FortiNAC must resolve these domains to their real IP addresses. Therefore, these domains must be listed in the Allowed Domains List in FortiNAC.
See cookbook recipe Domains to add to the Allowed Domains List in the Fortinet Document Library for a list of domains that are required for iOS initial configuration.