Fortinet black logo

Cookbook

Configuring the FortiAuthenticator

Configuring the FortiAuthenticator

  1. On the FortiAuthenticator, go to Authentication > RADIUS Service > Clients and register the FortiGate as a client.
  2. Enable all EAP types, set Realm to local, and apply the employees user group.

  3. Next go to Authentication > User Management > Local Users and create local user accounts as needed.
  4. For each user, add the following RADIUS attributes which specify the VLAN information to be sent to the FortiGate.
  5. The Tunnel-Private-Group-Id attribute specifies the VLAN ID.

    In this example, jsmith is assigned VLAN 100 and twhite is assigned VLAN 200.

Configuring the FortiAuthenticator

  1. On the FortiAuthenticator, go to Authentication > RADIUS Service > Clients and register the FortiGate as a client.
  2. Enable all EAP types, set Realm to local, and apply the employees user group.

  3. Next go to Authentication > User Management > Local Users and create local user accounts as needed.
  4. For each user, add the following RADIUS attributes which specify the VLAN information to be sent to the FortiGate.
  5. The Tunnel-Private-Group-Id attribute specifies the VLAN ID.

    In this example, jsmith is assigned VLAN 100 and twhite is assigned VLAN 200.