Hi Community,
We are using FG + FAC300 to establish sslvpn tunnel, with FotitokensMobile and FTM push.
For some reason, somme phones are not able to handle FTM push properly (approx 3/100 users).
We would like to disable FTM push for these users.
On the FAC, i created a group "nopush", type remote-LDAP / importe-remote-LDAP users.
This group is set with a radius attribute "fortinet - group - name" - static - string "nopush".
On the Radius service, i created a supplemental policy, with highest priority, and RADIUS attribute criteria matching the previous fortinet group.
This policy has an advanced option in Authentication factos, to not 'allow FTM push'.
But every test i do, with an apporpriate user, i giving me a FTM push.
What am i missing ?
Ragards,
Hello,
Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Thanks,
Hello,
We are still looking for someone to help you.
We will come back to you ASAP.
Thanks,
Hello,
To disable FortiToken Mobile (FTM) push notifications for some users:
Hi PFR
I guess the RADIUS request are not hitting the first policy. Can you check in the FAC logs?
User | Count |
---|---|
2567 | |
1358 | |
796 | |
650 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.