Configuring a RADIUS authentication server
You can use a RADIUS authentication server to authenticate administrator or destination server user logins.
Basic steps:
- Configure a connection to a RADIUS server that can authenticate administrator or user logins.
- Select the RADIUS server configuration when you add administrator users or user groups.
Before you begin:
- You must know the IP address, port, authentication protocol, and shared secret used to access the RADIUS server.
- You must have Read-Write permission for System settings.
To create a RADIUS server configuration:
- Go to User Authentication > Remote Server.
- Select the RADIUS Server tab.
- Click Create New to display the configuration editor.
- Complete the configuration as described in RADIUS server configuration.
- Save the configuration.
Settings | Guidelines |
---|---|
Name |
Specify a unique name for the RADIUS server configuration. Valid characters are After you initially save the configuration, you cannot edit the name. |
Server |
IP address or DQDN of the remote RADIUS server. |
Port |
The listening port of the RADIUS server. The commonly used port for a RADIUS server is 1812. |
Shared Secret |
Shared secret string used when connecting to the server. |
Authentication Protocol |
|
Timeout |
Specify the amount of time that FortiADC must wait for responses from the remote RADIUS server before it times out the connection. Valid values are from 5 to 60 seconds. The default is 5 seconds. |
Test Connection |
Tests the connectivity of the RADIUS server. |