Description | This article describes the necessary configuration on FortiGate to process the COA received from a RADIUS server. |
Scope | FortiGate. |
Solution |
Accounting is required for Change of Authorization (CoA) to function properly on FortiGate devices. Accounting helps track and manage changes made during CoA processes effectively.
edit "radius_server_name" set acct-interim-interval XXX <- Ensure that the value for <seconds> falls within the range of 60 to 86400 seconds for the accounting interval to be set correctly. set radius-coa enable config accounting-server edit 1 set status enable set server "x.x.x.x" <- x.x.x.x is the RADIUS server IP address. set secret <secret key configured over the RADIUS server> set port 1813 next end next end For the interim accounting update to be triggered, make sure that the RADIUS server is configured to include the interim accounting interval attribute in the Access-Accept packet, and that the value matches with that configured over the FortiGate.
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.