I have a ClearPass setup with Fortinet products (FortiGate, FortiSwitch, and FortiAP). Goal is to configure wired and wireless authentication with OnGuard health check. Wired authentication with health check is successful with the whole flow being as follows:
We want to replicate this process but for wireless authentication for the FortiAP with health check, but the automatic CoA message is not disconnecting the user. Change of authorization is greyed out when attempting to change status after authentication.
I have tried the ArubaOS wireless attributes and there are no ports or anything blocked on the firewall and there are no ACLs or any restriction.
What can I do to solve this problem or troubleshoot it more.
Best Regards,
Ali Serhan
The difference between FortiAP and FortiSW is that FortiAP RADIUS communication are handled by the FGT as WLC and not directly by the FAP. Take a look at this article Step 5 c. to troubleshoot further.
User | Count |
---|---|
2570 | |
1362 | |
796 | |
651 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.