Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Table of Contents

Create a RADIUS logon procedure

  1. Login to the DualShield Administration Console
  2. In the main menu, select "Authentication | > Logon Procedure"
  3. Click the "Create" button on the toolbar
  4. Enter a name and select "RADIUS " as the type
    Image Removed
    Image Added

  5. Click "Save"
  6. Click the context menu Context Menu icon of the newly create created logon procedure, and select "Logon steps"
  7. In the popup window, click the "Add" button at the top.
  8. Select the "One-Time Password" as the first step
    Image Removed
  9. select Logon Steps and a new section will be added to the page;

    Image Added

  10. To add a logon step, click on the Image Added button on the top left
  11. Choose Static Password

    Image Added

  12. Click Save
  13. Click Add
  14. Click "Save"
  15. Click "Add" again to add a second Logon Procedure
  16. Select OOBA Push as the second step

  12. Click "Click Save"

Create a RADIUS application

  1. In the main menu, select "select Authentication | > Applications"
  2. Click the "the Create" button  button on the toolbar
  3. Enter a name and select a realm
  4. Select the newly created logon procedure
    Image Removed
    Image Added

  5. Click "Click Save"
  6. Click the Context menu of the newly created application, select "select Agent" and  and then select the Radius agent.


    Click "Save" 
  7. Click Save 
  8. Click on the corresponding Elipses ellipses and choose "Self Test" from  from the menu.

 

Register

...

Fortigate as a Radius Client

  1. In the main menu, select "select RADIUS | > Client"
  2. Click the "Create" button on the top right.
    Image Removed
    Image Added


  3. Enter a friendly name
  4. Click on the magnifying glass and select the Radius Server
  5. Select the Application from the drop-down list.
  6. Click on the Cogwheel to the right to enter the IP address of the Network Policy Server Fortigate server and click "Add" then "Save"
  7. Enter the Shared Secret, which will be used in Network Policy ServerFortiGate's Radius Server configuration.
  8. Enter the NAS IP, which in this case will be the connection address used by FortiClient
  9. Select PAP, Chap & MSCHAP2 Select "PAP" "Chap" & "MSCHAP2" as the Authentication Protocols
  10. Click "Click Save"