Fortinet black logo

User Guide

1.2.0

Portal Rules

Portal Rules

The FortiGuest can be used to create a set of rules to allow user access to different portals that have been created. Each rule that is created is subject to certain conditions that you can create. If a rule is matched, the user is allowed or denied access to the portal and no other rules are checked. If no rule matches then the default rule is applied. You can Clone the portal rules to reuse them.

  1. Navigate to Guest Portal > Portal Rules and create a rule.

  2. Enter the Name of the new rule and provide a Description.
  3. Select Enabled and then select one of the portals you have created, or the default portal from the Portal drop down menu to direct the user to the relevant portal.
  4. Enable Deny Access if you do not wish to redirect the user to the guest portal.
  5. Select the applicable Timezone.
  6. Select the Conditions tab and create the conditions applicable to your portal rules.
  7. Click Add Condition and create new conditions. In this example, the user is redirected to the portal Login (specified in the previous step) on a given day of the week (except Saturday, Sunday, and Friday) between 12:30 and 15:00.

The current release of FortiGuest supports ONLY the following rule conditions.

  • Access Day of Week - This condition is tested on the these versions, Android 11 (Chrome), iOS 13.1.2, 12.5.5,9.2.1, MacBook 10.14.6, 12.0.1, Windows 11 Chrome v100.0.4896, and MS Edge v100.0.1185.
  • Access Time of Day - This condition is tested on the these versions, Android 11 (Chrome), iOS 13.1.2, 12.5.5,9.2.1, MacBook 10.14.6, 12.0.1, Windows 11 Chrome v100.0.4896, and MS Edge v100.0.1185.

Notes:

  • Configure the following URL in the SSID for captive portal re-direction.
    {FortiGuest_IP or FQDN}/cp/portal/v1/cp/portal/{FGT_IP}
  • Add the following FQDNs in the allowed list in FortiGate, for captive portal login with Google Chrome (Windows).
    • Chrome: IP subnet 13.107.4.52 255.255.255.255
    • Fonts.gstatic.com FQDN
    • ssl.gstatic.com

Portal Rules

The FortiGuest can be used to create a set of rules to allow user access to different portals that have been created. Each rule that is created is subject to certain conditions that you can create. If a rule is matched, the user is allowed or denied access to the portal and no other rules are checked. If no rule matches then the default rule is applied. You can Clone the portal rules to reuse them.

  1. Navigate to Guest Portal > Portal Rules and create a rule.

  2. Enter the Name of the new rule and provide a Description.
  3. Select Enabled and then select one of the portals you have created, or the default portal from the Portal drop down menu to direct the user to the relevant portal.
  4. Enable Deny Access if you do not wish to redirect the user to the guest portal.
  5. Select the applicable Timezone.
  6. Select the Conditions tab and create the conditions applicable to your portal rules.
  7. Click Add Condition and create new conditions. In this example, the user is redirected to the portal Login (specified in the previous step) on a given day of the week (except Saturday, Sunday, and Friday) between 12:30 and 15:00.

The current release of FortiGuest supports ONLY the following rule conditions.

  • Access Day of Week - This condition is tested on the these versions, Android 11 (Chrome), iOS 13.1.2, 12.5.5,9.2.1, MacBook 10.14.6, 12.0.1, Windows 11 Chrome v100.0.4896, and MS Edge v100.0.1185.
  • Access Time of Day - This condition is tested on the these versions, Android 11 (Chrome), iOS 13.1.2, 12.5.5,9.2.1, MacBook 10.14.6, 12.0.1, Windows 11 Chrome v100.0.4896, and MS Edge v100.0.1185.

Notes:

  • Configure the following URL in the SSID for captive portal re-direction.
    {FortiGuest_IP or FQDN}/cp/portal/v1/cp/portal/{FGT_IP}
  • Add the following FQDNs in the allowed list in FortiGate, for captive portal login with Google Chrome (Windows).
    • Chrome: IP subnet 13.107.4.52 255.255.255.255
    • Fonts.gstatic.com FQDN
    • ssl.gstatic.com