|Description||This article describes all the services that are possible to enable on the FortiAuthenticator interface and why they are configured.|
As a best practice, it is advised to enable only the services used.
Here are the services possible to enable when FortiAuthenticator is configured to act as a server:
Used when Fortinet Single Sign-On (FSSO):
Known protocols and their ports:
Note that Syslog and Syslog over TLS options are only available if Syslog SSO has been enabled.
The FortiAuthenticator can parse username and IP address information from a syslog feed from a third-party device and inject this information into FSSO so it can be used in FortiGate identity-based policies.
Keep in mind: