Hi guys,
I want to create a new WIFI infraestructure without connecting FortiAP directly to Fortigate, those would be connected to a POE switch. I´m thinking about doing it with Local Bridge traffic mode...
I want to create several SSID and depending on which one the user is connected to, send the user to one vlan or another vlan. I´m thinking of creating at least 5 vlans... (I´m not sure if I can create 5 different vlans in the FortiAP)... Of course, I will have a DHCP in those vlans and a firewall to route them...
Can I do that?
Thanks in advanced
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
You can just fill out the optional vlan field during SSID config.... you could also create just 1 SSID and have RADIUS assign the vlan for the user based on group membership
Hi,
Thanks but I need to use Fortigate local users to authenticate wireless users. I don´t have a Radius server...
I want 5 Vlans...
[ul]How can I do that without using a Radius server? Is that possible?
Regards
1- assign a VLAN ID to the SSID when creating
There is an upper limit to the number of SSIDs supported by a FortiAP (for many FAPs I think it's 8 - check the Feature Matrix for your model).
Of course, the port the APs connect to the FGT (through switches) needs to be a VLAN trunk. Don't forget to configure the switches.
2- create 5 user groups and assign them to the corresponding SSID.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1712 | |
1093 | |
752 | |
447 | |
231 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.