Skip to main content
cmaheu
Staff
Staff
May 5, 2020

Troubleshooting Tip: RADIUS timeout during 2-Factor Authentication

  • May 5, 2020
  • 0 replies
  • 2517 views

Description

 
This article describes how to resolve a scenario where RADIUS is timing out between the appliance and the RADIUS server before the user can enter the second form of authentication.
 
Scope

FortiNAC-F v7.x and FortiNAC v9.x +.

Solution

Increase the timeout value.  Contact Support for assistance:
  1. Log in as the root user to the Control Server CLI.
  2. For FortiNAC-F exec enter-shell and follow the same steps below. No special permissions are required to edit the file.
  3. Navigate to the /bsc/campusMgr/master_loader directory.
  4. Use an editor such as VI to open the .masterPropertyFile file.
  5. Add the following entry and save the file:


FILE_NAME=./properties_plugin/radiusManager.properties
{
com.bsc.plugin.radius.RadiusServer.socketTimeout=6000
}

 

  1. Restart FortiNAC using the following commands:

 

shutdownNAC
 
Wait 30 seconds, and then run the following command:
 
startupNAC
 
  1. From the CLI, navigate to:

cd /bsc/campusMgr/master_loader/properties_plugin

 
  1. Display the contents of the radiusManager.properties file to make sure the changes have been written correctly.


cat /bsc/campusMgr/master_loader/properties_plugin/radiusManager.properties | grep 
socketTimeout

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.