Explicite proxy and FSSO Auth

Author
Aghiles
New Member
  • Total Posts : 4
  • Scores: 0
  • Reward points: 0
  • Joined: 2019/06/30 02:21:13
  • Status: offline
2019/07/12 08:57:58 (permalink) 6.2
0

Explicite proxy and FSSO Auth

Hi,
 
I configured Fortigate (Fortios 6.2) as an explicite proxy with FSSO authentication, everything work well for the domain devices,  but some employees still use laptops, that are not part of the Domain, and for this type of the devices the FSSO Auth dont work.
 
Is there a way to set up a secondary Auth as a backup for the first FSSO Authentication, by using authentication rules ?
 
 
Best regards
#1

1 Reply Related Threads

    xsilver_FTNT
    Expert Member
    • Total Posts : 429
    • Scores: 91
    • Reward points: 0
    • Joined: 2015/02/02 03:22:58
    • Status: offline
    Re: Explicite proxy and FSSO Auth 2019/07/16 07:00:08 (permalink)
    0
    that's exactly what authentication rules/schemes/settings are meant for.
    How about something like fallback to NTLM (or better to Kerberos but ATM I have none set)?


    config authentication scheme
    edit "NTLM"
    set method ntlm
    set fsso-agent-for-ntlm "CollectorAgent"
    next
    edit "FSSO"
    set method fsso
    next
    end
     
    config authentication setting
    set active-auth-scheme "NTLM"
    set sso-auth-scheme "FSSO"
    end

    Kind Regards,
    Tomas
    #2
    Jump to:
    © 2019 APG vNext Commercial Version 5.5