Hot!FSSO Auth for authenticated wifi 802.1x users

New Member
  • Total Posts : 4
  • Scores: 0
  • Reward points: 0
  • Joined: 2019/06/30 02:21:13
  • Status: offline
2019/07/12 09:06:21 (permalink)

FSSO Auth for authenticated wifi 802.1x users

I configured Fortigate (Fortios 6.2) as an explicite proxy with FSSO authentication, everything work well for wired users with  domain devices.
Is there a way to use FSSO to athenticate also Corporate Wifi Users already authenticated with 802.1x with an aruba controller ?
Best regards

1 Reply Related Threads

    Expert Member
    • Total Posts : 458
    • Scores: 103
    • Reward points: 0
    • Joined: 2015/02/02 03:22:58
    • Location: EMEA
    • Status: offline
    Re: FSSO Auth for authenticated wifi 802.1x users 2019/07/15 00:59:35 (permalink)
    Yes, and usually is called RSSO.
    All of 802.1x auth setups I saw relied on RADIUS authentication between end point and WLC (wireless controller) handling particular AP through which user connected. That WLC or RADIUS server can send RADIUS Accounting messages to FSSO Collector. Either to FAC (FortiAuthenticator), standalone FSSO Collector installed on DC, or FortiGate (FGT) handling RSSO/FSSO. Any of those 3 solutions then process RADIUS Accounting Start/Stop/Interim messages to create authenticated user either in FW (FGT) or as FSSO user record and distribute to connected FSSO clients/FortiGates (FAC/standalone Collector). Solution on FGT is slightly different as it is older then RADIUS to FSSO implemented in FAC/standalone Collector.

    Kind Regards,
    Jump to:
    © 2020 APG vNext Commercial Version 5.5