Skip to main content
Contributor III
November 11, 2008

Technical Tip: Fortinet RADIUS vendor-specific attributes (VSAs)

  • November 11, 2008
  • 0 replies
  • 26081 views

 

Description

The following Fortinet RADIUS vendor-specific attributes (VSAs) can be returned to a FortiGate within an Access-Accept response from a RADIUS server.

This article also includes a brief screen-shot document that shows how to import Fortinet VSAs into Windows 2003 Server.

For more information about using Fortinet VSAs, see the related articles 'Using RADIUS for Admin Access and Authorization'.

Components

FortiOS all versions.

Steps or Commands

#
# Fortinet VSAs
#

VENDOR Fortinet 12356

BEGIN-VENDOR Fortinet
ATTRIBUTE Fortinet-Group-Name        1 string
ATTRIBUTE Fortinet-Client-IP-Address 2 ipaddr
ATTRIBUTE Fortinet-Vdom-Name         3 string
ATTRIBUTE Fortinet-Access-Profile    6 string

#
# Integer Translations
#

END-VENDOR Fortinet

 

Related Article:

Technical Note : Using RADIUS for Admin Access and Authorization - "wildcard" admin accounts ** Internal/Outdated**

 

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.