Fortinet black logo

Administration Guide

Virtual Servers

7.4.0
Copy Link
Copy Doc ID 5c5c1a78-d02f-11ee-8c42-fa163e15d75b:450544
Download PDF

Virtual Servers

Used to display and modify RADIUS server configurations.

Function

Local Server Type

Proxy Server Type

Required

“set allowedaccess”

Option

(FortiNAC-OS)

Authentication

Processes RADIUS MAC and 802.1x EAP authentication without the need to proxy to an external RADIUS server.

Supported 802.1x EAP modes:

· TTLS/PAP

· TTLS/MSCHAPv2

· PEAP/MSCHAPv2

· TLS

Processes RADIUS MAC but proxies 802.1x EAP authentication to a customer-owned external) RADIUS server.

Local Server:

radius-local

Proxy Server:

radius

See Open ports for details.

Accounting

The Local Server does not provide accounting.

If accounting is required, FortiNAC can be configured to proxy Accounting traffic to an external RADIUS server.

Proxies accounting traffic to a customer-owned (external) RADIUS server.

Local & Proxy Servers:

radius-acct

See Open ports for details.

Virtual Servers

Used to display and modify RADIUS server configurations.

Function

Local Server Type

Proxy Server Type

Required

“set allowedaccess”

Option

(FortiNAC-OS)

Authentication

Processes RADIUS MAC and 802.1x EAP authentication without the need to proxy to an external RADIUS server.

Supported 802.1x EAP modes:

· TTLS/PAP

· TTLS/MSCHAPv2

· PEAP/MSCHAPv2

· TLS

Processes RADIUS MAC but proxies 802.1x EAP authentication to a customer-owned external) RADIUS server.

Local Server:

radius-local

Proxy Server:

radius

See Open ports for details.

Accounting

The Local Server does not provide accounting.

If accounting is required, FortiNAC can be configured to proxy Accounting traffic to an external RADIUS server.

Proxies accounting traffic to a customer-owned (external) RADIUS server.

Local & Proxy Servers:

radius-acct

See Open ports for details.