Created on
08-27-2025
04:48 AM
Edited on
09-08-2025
01:27 AM
By
Jean-Philippe_P
Description | This article describes how to configure an SSID on the FortiGate that is restricted to the FortiAuthenticator self-service portal. This article assumes that the self-service portal policy has already been set up on the FortiAuthenticator. |
Scope | FortiGate, FortiAP, FortiAuthenticator. |
Solution |
To provide user access to the FortiAuthenticator self-service portal, an open SSID on the FortiGate can be configured. This SSID should be restricted to allow only access to the DNS service and HTTPS traffic to the FortiAuthenticator. Upon connection, users will be redirected to the portal URL. The portal URL is found on the FortiAuthenticator under (Authentication -> Portals -> Policies).
Self-service SSID configuration:
config wireless-controller vap
Firewall policies: config firewall policy
Disclaimer page configuration (Optional):
The default disclaimer page on the FortiGate displays a generic user agreement message but does not indicate where the user will be redirected after selecting 'Yes, I agree'. To customize this behavior, the HTML code of the disclaimer page can be modified under System -> Replacement Messages -> Extended View -> Disclaimer Page.
Related article: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.