FortiAuthenticator
FortiAuthenticator provides access management and single sign on.
rbraha
Staff
Staff
Article Id 221906

Description

 

 This article describes about logging into the FortiAuthenticator with remote LDAP users.

 

Scope

 

FortiAuthenticator

 

Solution

 

To login to FortiAuthenticator with remote LDAP users, add LDAP sever on FortiAuthenticator.

Go to Authentication - > Remote Auth.Servers - > LDAP - > Create New.

 

ldap2.png

 

Create a new group, Authentication - > User Management - > User group and specify filter for which group that needs to be imported.

 

group.png

 

Go to remote users, users imported  could be found here, select user and assign free token from the list.

 

gatuzo1.png

 

Create a realm on FortiAuthenticator, under User Management.

 

realm.png

 

Go to System - > Administration - > System Access, on the section for realms, add new realm, specify new realm created and also assign previous group created before.

There in no need to create Radius Policy on FortiAuthenticator.

 

realm1.png

 

Test by logging into FortiAuthenticator, a token may be required.

 

gatuzo2.png

 

Check from the debug logs, https:<fac-ip>/debug/radius, that user is authenticated successfully.

 

deb3.png

 

deb2.png

Contributors