We have fortigate firewalls & EMS server for Forticlient management. We are using several FortiAPs. We want to use certificate-based authentication for wifi users. I know we can achieve it by using EAP-TLS 802.1x and radius server. Is there any way we can use EMS server for certificate-based authentication for wifi users? If so please share document for the same.
Thanks in advance.
As per my understanding, you can use NAC policy on FGT with ZTNA tags, knowing that the FortiClient already use certificate for registration and telemetry.
Actually FortiClient has nothing to do with WiFi authentication, so I know this suggestion is not WiFi authentication, but it is NAC control and is based on client certificate.
User | Count |
---|---|
2593 | |
1381 | |
800 | |
659 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.