Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
HeretoLearn23
New Contributor II

Autopilot and NAC integration

What is the best procedure for OOBE Autopilot devices and NAC integration? We have MDM Connector configured. When ever a new device is connected it is moved to isolation and cannot continue with OOBE. 

 

Currently our windows devices registered as a host if persistent agent is on the machine. 

 

Current MDM Connector Configs.

2024-01-17 08_14_20-Window.png

 

FortiNAC 

4 REPLIES 4
AEK
SuperUser
SuperUser

When you say the device is moved to isolation, do you mean registration, authentication, or other?

AEK
AEK
HeretoLearn23
New Contributor II

Its is Registration but we currently do not allow users to actually Registration/authentication via Captive Portal. 

Here is an example of where we get stuck at in the OOBE process. 

Untitled.png

 

AEK
SuperUser
SuperUser

AEK
ebilcari
Staff
Staff

Since this type of setup "OOBE Autopilot" is a Microsoft feature I guess you are using InTune as MDM, is this correct? What version of FNAC are you currently running?

Due to Microsoft changes the option "Enable On Demand Registration" may not work, the issue is fixed and will be included in next releases (reference #919953).

As a workaround you can lower the "Automatic Registration Polling Interval" to 30 minutes. This option will try to register new hosts found in Intune before they are connected in network devices managed by FNAC.

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors