Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
starking9b
New Contributor

Fortigate Captive portal with huawei access point

Hello every body 

I searched  a lot for my problem without solution and I hop to have help from you .

I working on external captive portal with fortigate and huawei access point .

but when any user who connected to this access point trying access internet he will redirect to captive portal login page and he must insert his username and password . my problem is when any user make authentication all another users who connected to same access point can access internet . because fortigate make authentication for access point not for user

so captive portal login page url look like this 

http://captivelogin&post=http://ftgurl:1000/fgtauth&magic=01010f85d8d776a7&usermac=Access Point mac address &apmac...

 

so the authentication made for access point mac address not for user's mac address and all users who connected to this authenticated access point can access internet without authentication 

 

please help me how can I solve this poroblem

 

1 REPLY 1
mahff
New Contributor II

Hello,

I'm curious to know if you've set up dedicated VLANs for your users. Moreover, does this VLAN setup conclude at your FortiGate device? Adjusting your network to include dedicated VLANs terminating at the FortiGate can significantly impact resolving your authentication dilemma.

 

On another note, consider adopting RADIUS for authentication. RADIUS stands out by facilitating personal user authentication via your captive portal, leveraging distinct usernames and passwords rather than the access point's MAC address. For guidance on integrating RADIUS with your FortiGate, this documentation could prove helpful: Integrate FortiGate with RADIUS.

 

Best regards, 

Mahff

Labels
Top Kudoed Authors