I can't find the right configuration.
I can successfully authenticate users using Entra ID and firewall policies.
However, what I want to achieve is to have a rule that allows traffic for unauthenticated users and several rules for authenticated groups (Entra ID).
I don’t see the option for a captive portal that allows on-demand SSO authentication.
It’s possible that I’m thinking this wrong since we migrated from Sophos XG, where you could log in to its captive portal and authenticate with Entra ID SSO.
Any help will be appreciated
havent really played with captive portals, but you can activate them in two ways.
interface level, https://docs.fortinet.com/document/fortigate/7.0.15/administration-guide/934626
policy level, https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-create-FortiGate-captive-portal-usi...
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1843 | |
1130 | |
769 | |
447 | |
258 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.