Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
jorbe
New Contributor

FSSO authentication

I have implemented FSSO authentication, but unauthenticated users which match the source network (but not FSSO group) can not access resources.

1 REPLY 1
xsilver_FTNT
Staff
Staff

That's actually expected outcome as firewall is implicitly Deny:Any and so firewall policies are actual exceptions to that generic rule, right?

And as unauthenticated users do not and can not match to required/mandatory group, then "tho shell not pass".

 

To let them through use either:

- FSSO Guest group as last possible match

- set up fallback to other, active, auth method

 

Tomas Stribrny - NASDAQ:FTNT - Fortinet Inc. - TAC Staff Engineer
AAA, MFA, VoIP and other Fortinet stuff

Labels
Top Kudoed Authors