FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
acvaldez
Staff
Staff
Description This article describes how FortiGate can detect all the groups of the captive portal user once it is authenticated.
Scope FortiGate.
Solution

- Test user is 'test1'.

- 'test1' user is part of 'group1' and 'group2'.

 

acvaldez_0-1660953718829.png

 

- Captive portal is enabled on the interface port2 where the captive portal user is behind of.

'group1' and 'group2' have been added under user restricted groups which are the groups that 'test1' user is part of.

 

acvaldez_1-1660953739976.png

 

- With this configuration. once 'test1' user authenticates via captive portal, the FortiGate will detect all the groups that the 'test1' captive portal user belongs to.

 

acvaldez_2-1660953761117.png

 

It is possible to check it as well via cli by running this command # diag firewall auth list.

 

acvaldez_3-1660953780847.png
Contributors