Hello All
I am looking to have Fortiweb secure all of our on-premise external web applications that require Kerberos authentication.
Also, I need to enable MFA for this authentication.
According to the Fortiweb documentation, MFA can be enabled with Fortiauthenticator, which only works with Radius authentication, not Kerberos.
Has anyone tried something similar? Can a scenario like the one below work?
Fortiweb manages Kerberos authentication and keeps the token until it requests MFA via FortiAuthenticator.
If the MFA is okay, Fortiweb should send the Kerberos token to the Web application.
Hi ITArc
I'm not aware that Kerberos support MFA. Does it?
No it doesn't natively support it. what I am looking to do is implementing MFA alongside Kerberos by integrating additional security policy in Fortiweb. but I am incertain if this will work
User | Count |
---|---|
2517 | |
1347 | |
794 | |
639 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.