802.1X Wireless Machine Certificate based RADIUS Authentication (using NPS) with FortiAP's
We have a few new FortiAP's (running FAP 7.4.5) and managed by our FortiGate (running FOS 7.4.8). I would like to allow our laptops to automatically connect and authenticate to our Wi-Fi network using their machine certificates. We have an internal Windows CA and are using Windows NPS as a RADIUS server, is there a guide available to get this working properly on the FortiGate RADIUS and SSID configuration side?
I've been spinning my wheels on this for awhile now. Do the FortiGates/AP's even support EAP-TLS (or EAP-TTLS) or do I have to stick with MS-CHAP-V2? When adding the RADIUS server in the FortiGate, MS-CHAP-V2 seems like the limit.
Thanks!
