Description |
This article describes the scenario when a FortiAuthenticator is acting as Radius server. Whenever, there is the Access Request the Fortiauthenticator by default checks in Remote/Local users. |
Scope |
In a wide scenario, it would be difficult to add the Radius Vendor Specific Attributes for each individual user. The option available would be Group based search and match the attributes configured in user groups. |
Solution |
Note. If there are users and user groups, by default Fortiauthenticator matches the user and send the information to Radius client.
To match the User groups and send the Vendor Specific attribute information to Radius client, it is necessary to add the Filter.
Navigate to Radius Service -> Policies -> Identity Source -> Filter under groups and add the required groups.
This will take preference search first for Groups rather than users.
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.