Created on 10-30-2023 03:38 AM Edited on 08-28-2024 11:47 PM By Jean-Philippe_P
Description | This article describes how to login in windows with local users using the FortiAuthenticator Agent. | |
Scope | FortiAuthenticator. | |
In some cases, a local account is created on the PC and it is necessary for these users to login with 2FA using the FortiAuthenticator Agent. Refer to the documentation for FortiAuthenticator Agent configuration.
To log in with local users, it is necessary to have the '.' realm created on FortiAuthenticator. The same username/password should be set on the FortiAuthenticator local user database.
The same user credentials that exist on windows are created on FortiAuthenticator with local users with tokens assigned on FortiAuthenticator.
The example above was a test performed on Windows with the user 'gimi'. On the FortiAuthenticator Agent, select '.' instead of domain. Enter credentials. A prompt for a token will appear.
Since the FortiAuthenticator Agent communicates with FortiAuthenticator through a Rest API, it is possible to check from debug logs on FortiAuthenticator.
Navigate to https://<fac-ip>/debug and select the REST API while in FortiAuthenticator Agent -> Simulation -> View Logs.
If there is the error 'User name or password is incorrect':
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.