Skip to main content
Aghiles
New Member
February 13, 2025
Question

Guest SSID on fortigate (FortiAP) with external captive portal authentication on clearPass issue

  • February 13, 2025
  • 1 reply
  • 558 views

Hi guys,

I am configuring a Guest SSID in tunnel mode on fortigate (FortiAP) with external captive portal authentication on aruba clearpass.

The redirection to the captive portal works correctly and when I log in with a user and password, Fortigate transmits the credentials to ClearPass which authenticates the user and correctly returns an Access-Accept.

However, the problem is that Fortigate does not authorize the user so it always remains on the captive portal page.

Anybody have an idea about the cause of this issue ?

 

Best regards

1 reply

AEK
SuperUser
SuperUser
February 14, 2025

Hi Aghiles

Did you enable "Dynamic VLAN Assignment" in the SSID configuration?

On the other hand, this guide is for FGT-FAP integration with FortiNAC, but I'm sure it will help to understand more about the configuration from FGT side.

https://docs.fortinet.com/document/fortinac-f/7.6.0/fortiap-integration/335351/overview

 

AEK