Description This article describes the steps to create an additional
Winbind instance in FortiNAC that connects to a different domain and its
respective Domain Controllers. The reason why the configuration of
Winbind is required in FortiNAC is explai...
Description This article describes an issue that may affect setups that
are upgraded from firmware v9.x running in CentOS to firmware v7.x
running in FortiNAC-OS. The captive portal is not reachable, the reason
(error 503): 'Service Unavailable. The ...
Description This article describes an example of how to set up VPN
session management for a FortiGate in FortiNAC using the Dissolvable
Agent on the end host, along with key troubleshooting steps. Scope
FortiNAC, Dissolvable Agent and FortiGate. Solu...
Description This article describes an example of how to set up FortiNAC
and Persistent Agent communication in a simplified network. Scope
FortiNAC and Persistent Agent. Solution Network design and IP planning.
Below is an example of a network diagram...
Description This article describes how to extract and utilize the
FortiNAC MIB file in a Network Monitoring System. This helps monitor the
FortiNAC setup itself, like its hardware components, license usage, and
the details of clients and managed devi...
As mentioned in the previous reply, you will need a PKI solution to
enroll certificates (user, computer or both) in the end hosts in order
to have EAP-TLS authentication. Usually Microsoft CA is used, that has
enrollment templates which automate the ...
Integration with network devices are different but they share a lot of
similarities. In FNAC documentation there are dedicated Integration
Guides for most of the network devices. To proper understand a full
integration, I would suggest to read a guid...
So these users use the local admin account to login to the PC and when
prompted by the agent they enter their AD credentials? This can be
limited by adding a custom Scan and monitor a specific file, a registry
value or a certificate that is available...
There is no documentation that directly compares the two solutions, but
you can review the specifications of each individually to perform a
comparison. Regarding the network deployment, FNAC will require SNMP,
CLI and API access to network devices wh...
This will happen if the Registration is not configured in model
configuration for the SSID or the network device or if the MAC address
is not considered valid, which looks like it's not the case. You can try
with a resync interface in FGT and double ...