Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Keyrock_IT
New Contributor II

WiFi e LAN authentication using certificate with FreeRadius

Hello everyone,

I'm looking for guidance on configuring a network authentication scenario using FortiGate and FortiSwitch devices, along with a FreeRADIUS server. Here's my hardware setup:

  • FortiGate 100F running firmware v7.2.8
  • FortiSwitch 148F running firmware v7.4.2
  • FortiAP 231G running firmware v7.4.0
  • FreeRADIUS server (version 3.0) running in the internal LAN

Authentication Requirements:

  • I need to authenticate devices (both on WiFi and LAN) using certificates only, without relying on user credentials or MAC address filtering.

Questions:

  1. Is it possible to implement certificate-based authentication in this setup for both LAN and WLAN?
  2. What would be the recommended approach to configure this scenario using FortiGate and FreeRADIUS?

Any guidance, tips, or configuration examples would be greatly appreciated.

Thank you in advance for your help!

11 REPLIES 11
hbac
Staff
Staff

Hi @Keyrock_IT,

 

It is possible. You can configure FortiGate to send authentication requests the the RADIUS server. Please refer to this article: https://community.fortinet.com/t5/FortiGate/Technical-Note-How-to-Authenticate-to-FortiAP-with-certi...

 

Regards, 

Keyrock_IT
New Contributor II

Thank you for sharing the procedure.

I took a look at the guide, but it appears to reference RADIUS configuration on a Windows server machine. Currently I am using FreeRadius on a Linux machine.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors