Description | This article describes all the services that are possible to enable on the FortiAuthenticator interface and why they are configured. |
Scope | FortiAuthenticator. |
Solution |
As a best practice, it is advised to enable only the services used. Here are the services possible to enable when FortiAuthenticator is configured to act as a server:
Used when Fortinet Single Sign-On (FSSO):
Known protocols and their ports:
Note that Syslog and Syslog over TLS options are only available if Syslog SSO has been enabled. The FortiAuthenticator can parse username and IP address information from a syslog feed from a third-party device and inject this information into FSSO so it can be used in FortiGate identity-based policies.
Keep in mind:
|