FortiAuthenticator
FortiAuthenticator provides centralized authentication services for the Fortinet Security Fabric including multi-factor authentication, single sign-on services, certificate management, and guest management.
ajoe
Staff
Staff
Article Id 195172

Description

 

This article describes how to enable configuration of the TACACS+ authentication service on FortiAuthenticator.

Scope


FortiAuthenticator v6.2.0 and above.

Solution

 

Starting from 6.2.0, the TACACS+ authentication service can be enabled in FortiAuthenticator.

Configuring TACACS authentication requires the following steps:

 

  1. The TACACS+ service needs to be enabled on each FortiAuthenticator network interface individually.

 
  1. Adding TACACS clients.
  2. Creating policies.
  3. Creating and assigning authorization rules.
 
TACACS+ account logs are viewable from the debug logs page (https://<FAC IP>/debug/).
 
Contributors