Configure Azure AD SAML Auth to provide RBAC for user access.. AND take
advantage of Azure AD MFA, and Conditional Access policies to block
Ricky users/sign-ons etc.
Hello, We are running into an issue deploying our new FAP-U321EV access
points. When connected to a Cisco Catalyst 2960x switch they are almost
always unable to obtain an IP address. What we are seeing is that the
DHCP Discover packets are not making...
Has anyone successfully used Option 43 on a Linux based DHCP server to
allow FortiAP's to discover controllers on multiple subnets?We have
recently purchased 3, 200d controllers. We have them in an nplus1
configuration. We also purchased 250 access p...
Hello, We are currently running our Fortigate 1500D in transparent mode.
We are running dual stack IPv4/IPv6. Websites that are hosted on IPv6
work perfectly fine on 5.2.x (Currently running 5.2.11). Every time we
have tried to upgrade to 5.4.x or 5....
Hello, I am looking for a way to export the policies from my Fortigate
into a user readable format so that we can perform an internal audit to
ensure that all of our active policies are actually needed. Has anyone
seen a way to do this? If there is n...
NIKHIL, Enabling portfast on our edge ports of the Cisco switches did
allow our AP's to get an IP properly. We have since moved away from
FortiWLC and are using a cluster of Fortigates to control them. We did
not have a lot of luck with our WLC deplo...
Generally it is very difficult to create a rule for someones home IP
address as they change from time to time. It can be done but be prepared
for users to complain every time they get a new IP and the Policies no
longer work. From a security perspect...
Ok, I was able to get to the bottom of my issue. It seems that
"spanning-tree portfast" needs to be enabled on the switchports where
the FAP-U321EV AP's are connected or they might not get an IP. We found
this more the case after the AP upgraded from...
Thanks John, But I think some details in my original post are being
overlooked. The issues I am seeing is specifically that once the DHCP
discover packets are sent from the AP they are dropped on the switch
prior to being broadcast. This is not a con...