FortiAuthenticator
FortiAuthenticator provides access management and single sign on.
warshad
Staff
Staff
Article Id 210458
Description This article explains how to resolve the issue when trusted host subnets with FortiManager and FortiAnalyzer prompt for OTP / FortiToken.
Scope FortiAuthenticator.
Solution

1) Login to FortiAuthenticator GUI (ensure it has a valid Internet connection).

 

2) Make sure to add the Radius attribute for user IP (Calling-Station-Id) through the RADIUS policy in the Authentication factors.

 

 

Calling-Station-Id.PNG

 

 

3) Enable Adaptive Authentication through RADIUS policy in the Authentication Factors -> Adaptive Authentication.

Note: FortiManager and FortiAnalyzer should be on version 6.4.6 or above for Calling-Station-Id to be sent in the Access-Request packet.

Contributors