Hello,
I'm running Juniper MiST solution and all users are authenticated using Aruba ClearPass Radius against Active Directory.
Recently, I implemented FortiGate F1801 and wanted to see the authenticated user accounts/names instead of the IP Address.
Any guide in doing this config? I have followed multiple KB articles, but still not able to see the Authenticated Users in Clearpass to appear in FortiGate.
Any help on this please?
Regards,
Solved! Go to Solution.
Hi All,
The issue was resolved.
All your user accounts authenticated in Clearpass will be able to appear in FortiGate Firewall.
Thanks,
Are you trying to get the user name in traffic logs or under the monitor tab for firewall users? Can you share a screenshot?
Hi Sraj,
Yes, I'm trying to display the username in traffic logs instead of the IP. Even in FAZ also, all what i'm getting is IP only. And since we have a huge DHCP pool, it would be very difficult to trace.
Thanks,
Is the firewall policy configured with user auth? Or the clear-pass is integrated with Fortigate? I am trying to understand if the firewall is aware about the user id check or it process the traffic based on L3/L4 information
Hi Sraj,
Yes, I have configured the RADIUS Server and, in Clearpass I configured a Target Proxy, defined the IP address of the Firewall, and in each service of Clearpass, I made sure the ProxyTarget is checked in each policy and FortiNet selected as a Target Proxy as defined earlier,
but I'm not getting any traffic pass from Clearpass to FortiNet.
Any help, would be appreciated.
Thanks,
Hi All,
The issue was resolved.
All your user accounts authenticated in Clearpass will be able to appear in FortiGate Firewall.
Thanks,
Hi,
Not working with me.
May I see your configuration?
Thanks
Created on 05-20-2024 04:46 AM Edited on 05-20-2024 04:46 AM
Many thanks for sharing this.
Could you please share config details?
I have integrated ClearPass with FortiManager, but get role info, not actual user info.
I am going to follow this:
https://docs.fortinet.com/document/fortigate/7.0.10/administration-guide/85730
Would I be able to get user info?
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1737 | |
1107 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.