Created on 08-18-2009 05:30 AM Edited on 06-16-2022 08:38 AM By
This article describes Fortinet's RADIUS Dictionary (VSA - vendor-specific attributes), NTRadPing.
For more recent Fortinet's RADIUS Dictionary check the link below of this article.
The files attached to this article provide the Radius VSA Dictionaries for
1) FortiOS 4.0
2) FortiOS 3.0 MR7
Note: NTRadPing 1.5 refuses to start with a dictionary containing the types 'ether' and 'octets'. For simplicity of use, those types are re-mapped to the 'string' type.
Those attributes are used and important in related topics linked below.
For example, when Access-Accept received from RADIUS server can affect user's group membership as in Technical Note: Authentication, Remote server group match of user group configuration with RADIUS server user.
Or for wildcard admin authentication/authorization and/or even VDOM assignment as in Technical Tip: Remote Admin login with Radius selecting admin access account profile.
Attached is a brief screen-shot document that shows how to import Fortinet's Dictionary (VSAs) into Windows 2003 Server.