Skip to main content
FortiKoala
Staff
Staff
September 28, 2018

Technical Tip: Rogue wireless clients cannot connect to SSID

  • September 28, 2018
  • 0 replies
  • 3994 views

Description


Rogue wireless clients cannot connect to SSID.  Registered clients connecting to the SSID work as expected.


Scope


ForiNAC v9.x.

Solution

 

  1.  Navigate to Network > Inventory.
  2. Select the Controller/Access Point, then click on the SSIDs tab.
  3.  Select the affected SSID, 'right-click' and select SSID Configuration

If Registration State=Deny, FortiNAC rejects a RADIUS request that comes from a rogue host.
If Registration State= Enforce, but a VLAN is not defined (Registration Access Value= (none)), FortiNAC will reject the client (even if the RADIUS server accepts the user account).
 
Set the access value to the appropriate VLAN and select ApplyRegistration State= Enforce.
Registration Access Value= (Registration VLAN)

29.07.2025_13.55.57_REC.png
Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!