Skip to main content
glebras_FTNT
Staff
Staff
February 7, 2018

Technical Note: FortiPortal RADIUS Vendor-Specific Attributes (VSA)

  • February 7, 2018
  • 0 replies
  • 2369 views
Description
This article describes the Vendor-Specific Attributes to configure FortiPortal in a RADIUS Server.

Scope
FortiPortal v4.0

Solution
To configure a RADIUS Server for FortiPortal, add the following vendor-specific attribute to the Fortinet dictionary file:
VENDOR 12356 Fortinet

Then configure VSA for mapping to FortiPortal role:
VENDORATTR Fortinet-Fpc-User-Role 40 string

Multiple roles can be specified by using comma-separated values.  Also, note that a user will not be able to login to FortiPortal if the roles are not configured on the RADIUS Server.

To specify the customer identification, configure VSA attribute for mapping to customer profile when using RADIUS authentication:
VENDORATTR Fortinet-FPC-Tenant-Identification 41 string

The RADIUS server will send one of the domain names specified in the Domains field of the customer settings in the value of the VSA

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!