Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
stich86
New Contributor II

External captive portal redirect (Entra ID) from a routed subnet

Hello guys,

 

I have a cluster configured to ask users authentication using Entra ID account. This is working when using host connected to an interface that is directly managed by Fortinet (and it creates the local in policy for port 1003), but I need to make it works also from a routed subnet that is passing thru a transit interface (it’s an MPLS line), but the redirect doesn’t work for this interface.

 

I've created the zone and relative rules, but nothing to do.

 

any suggestion?

 

thanks in advance!

2 REPLIES 2
AEK
SuperUser
SuperUser

Hi Stich

I tried in my lab, a host connected to a router, and the router connected to FGT, on an interface on which I enable the active portal, and it works fine for me: the active portal is triggered when host's traffic tries to cross the firewall.

Or maybe I misunderstood your requirement?

AEK
AEK
stich86
New Contributor II

I don’t have captive portal enabled on any interface, just an identity rule with ENTRA saml configuration

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors