- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Fortinac LDAP and RADIUS
Hi,
When is not possible to have an Windows NPS for corporate VLAN authentication, Winbind can be a good solution?
Thanks.
Regards
- Labels:
-
FortiNAC
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
You can use Winbind but keep in mind that Winbind is used to provide MSCHAPv2 authentication only. If using a different scheme, such as EAP-TTLS/PAP or EAP-TLS, configuration is not required.
More information can be found here https://docs.fortinet.com/document/fortinac-f/7.6.0/administration-guide/670285/winbind
I hope this will be helpful.
Regards
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Winbind is a tool used to validate the challenges for authentication types that don't exchange passwords (emulate a windows PC) like MSCHAPv2, some details are shown in this article.
FNAC has Winbind included in its local RADIUS server that can be used to replace Windows NPS server roles and also offer advanced NAC features.
If you have found a solution, please like and accept it to make it easily accessible for others.