Created on 03-13-2020 08:39 AM Edited on 01-31-2024 06:12 AM By Jean-Philippe_P
Description
This article describes how to configure FortiNAC as a RADIUS proxy.
This can be useful in case of implementing wired or wireless 802.1x authentication.
Related link:
https://docs.fortinet.com/document/fortinac/8.6.0/administration-guide/214558/radius
Scope
- RADIUS server such as FortiAuthenticator, Microsoft NPS.
- RADIUS server needs to support PEAP, PAP and MSCHAPv2.
Solution
1) Add RADIUS server under Network Devices -> RADIUS settings.
tcpdump -i any -vvnnXS 'port 1812 and host A.A.A.A' <----- where A.A.A.A is the IP address from the RADIUS server.
tcpdump -i any -vvnnXS 'port 1812 and host B.B.B.B' <----– where B.B.B.B is the IP address from the network unit that is sending RADIUS authentication requests.
Related Articles
Technical Tip: Microsoft NPS as RADIUS client for active-directory authentication
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.