Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Create a RADIUS logon procedure

  1. Login to the DualShield management console
  2. In the main menu, select “Authentication Authentication | Logon Procedure”Procedure
  3. Click the “Create” Createbutton on the toolbar
  4. Enter “Name” Nameand select “RADIUS” RADIUSas the Type
    Image Removed
    Image Added

  5. Click “Save”Save
  6. Click the Context Menu icon of the newly created logon procedure, select “Logon Steps”
  7. In the popup windows, click the “Create” button on the toolbar
  8. Logon Steps” and  a new section will be added to the page;

    Image Added

  9. To add a logon step we need to click on the Image Added button then select the desired authentication methodsSelect the desired authentication method, e.g. “Static Password” 
    Image Removed
  10. Click “Save”
  11. Static Password” and "On Demand";

    Image Added

  12. Click “Save” to confirm the changesPlease repeat steps 7 to 9 to create a second authentication step such as One-Time Password or On-Demand password.

Create a RADIUS application

  1. In the main menu, select “Authentication Authentication | Applications”Applications
  2. Click the “Create” Createbutton on the toolbar
  3. Enter “Name”Name
  4. Select “Realm”Realm
  5. Select the logon procedure that was just created 
    Image Removed
    Image Added

  6. Click “Save”Save
  7. Click the context menu of the newly created application, select “Agent”Agent
    Image Removed
    Image Added

  8. Select the DualShield Radius server, e.g. ”Local Local Radius Server”Server
  9. Click “Save”Save
  10. Click the context menu of the newly created application, select “Self Test”
    Image RemovedSelf Test

    Image Added

Register the Fortigate SSL VPN as a Radius client

  1. In the main menu, select “RADIUS RADIUS | Clients”Clients
  2. Click the “Register” Image Added button on the toolbar
    Image Removed
    Image Added

  3. Select the application that was created in the previous steps
  4. Enter Fortigate's IP in the IP address
  5. Enter the Shared Secret which will be used in Fortigate's settings.
  6. Click “Save”Save