Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Ut_Ut
New Contributor

how to configure fortilink nac quarantine vlan?

how to configure fortilink nac quarantine vlan?

Configuration with fortilink nac works fine wireless and wired. onboarding vlan does the job well. But here is the point I can't understand. we are broadcasting single ssid. The device I define nac policy with the device mac address gets ip from the relevant vlan and accesses it. But how do I ensure that the device that I have never defined automatically receives ip from the quarantine vlan. because the device that we do not define cannot receive ip when connected to the relevant ssid.

 

1 REPLY 1
ebilcari
Staff
Staff

If I get it right you want to isolate WiFi hosts that are not matching any NAC policies (no rule created yet). If this is the case than the onboard VLAN can be used for that, more information shown in this article.
More information also shown in the admin guide:

When NAC devices are discovered, they are assigned to the NAC onboarding VLAN. You can specify the default onboarding VLAN or specify another existing VLAN. By default, there is no NAC onboarding VLAN assigned.

When NAC devices are discovered and match a NAC policy, they are automatically authorized by default.

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors