Forinet, Freeradius and certificate autentication
Hi all,
I'm not a Fortigate or Freeradius expert by any means but I usually manage to do things if I get some notes how to do things.
I would like to accomplish the following.
Part 1
Authenticate windows 11 native ipsec vpn users with certificates (EAP-TLS)
Firewall is Fortigate with 7.2.7 firmware
Remote user ipsec vpn with certificates, users are stored in LDAP (Not AD) directory, certificates contain e-mail address and cn.
Freeradius is used as Radius server, connected to LDAP Backend, want to use that LDPA server to verify certificate and return authenticated/not authenticated.
Part 2
WPA2 authentication for windows 11 users with certificates (EAP-TLS)
Wireless authentication for primary Windows 11 users, Fortinet Access Points connected to Freeradius server via Fortigate Firewall.
Part 3
802.1X authentication for wired clients, Fortinet Switches connected to Fortigate firewall and Freeradius server.
There are lots of playbooks for doing this with Windows AD and Windows NPS server, but not so much for Freeradius.
I suppose that there are people that has done this before and could share pointers how to get it to work.
I know that it probably would be easier to setup with Fortinet Radius or NPS, but I don’t have that so I have to work with what I got
Thanks in advance
Lennart
