FortiAuthenticator
FortiAuthenticator provides centralized authentication services for the Fortinet Security Fabric including multi-factor authentication, single sign-on services, certificate management, and guest management.
jiyong
Staff
Staff
Article Id 331775
Description

 

This article describes the Password-Policy function provided by FortiAuthenticator.

 

Scope

 

FortiAuthenticator.

 

Solution

 

Initially, the Password Policy is applied as 'Default'. When creating a group policy, the default password policy can be applied.

First, create a new password policy. 'reminder' is set to occur every day from at least 14 days in advance.


Authentication -> User Account Policies -> Passwords:

 

password.png

 

When creating a new password policy, it can be applied to each group.

 

Authentication -> User Management -> User Groups -> Password Policy:

 

usergroup.png

 

In addition, if setting up an email server in System -> Messaging -> SMTP Servers and Email Services and then set up email in the user account, it is possible to check alerts by email.

System -> Messaging -> SMTP Servers and Email Services

 

smtpserver.png

 


If it is desired to test this function, it is possible to check it based on the time when the initial Password Policy was created.
FortiAuthenticator's Password-Policy expiration check is performed at 12:00 PM by default.

If the time is changed within 14 days after setting as above, an alert will occur at 12 PM.

 

Log Access :

 

result_log.png

 

Received email:

 

result_mail.png