Fortinet Document Library
Version:
6.2.1
6.2.0
6.1.2
Version:
6.1.1
6.1.0
6.0.5
Version:
6.0.4
6.0.3
6.0.2
Version:
6.0.1
6.0.0
5.5.0
Version:
5.4.0
5.3.0
5.2.0
Version:
5.1.0
5.0.0
4.3.0
Version:
4.2.1
4.2.0
Table of Contents
What's new in FortiAuthenticator
FortiAuthenticator 6.0.4
FortiAuthenticator 6.0.3
FortiAuthenticator 6.0.2
FortiAuthenticator 6.0.1
FortiAuthenticator 6.0.0
Introduction
Before you begin
How this guide is organized
Registering your Fortinet product
Setup
Initial setup
FortiAuthenticator-VM setup on VMware
Administrative access
Adding FortiAuthenticator to your network
Maintenance
Backing up the configuration
Upgrading the firmware
Licensing
Swapping hard disks
CLI commands
Troubleshooting
FortiAuthenticator settings
FortiGate settings
System
Dashboard
Customizing the dashboard
System information widget
System resources widget
Authentication activity widget
User inventory widget
License information widget
Disk monitor widget
Top user lockouts widget
User lookup
Network
Interfaces
DNS
Static routing
Packet capture
Administration
System access
High availability
Firmware upgrade
Configuring auto-backup
SNMP
Licensing
FortiGuard
FortiNACs
FTP servers
Admin profiles
Messaging
SMTP servers
Email services
SMS gateways
Authentication
What to configure
Password-based authentication
Two-factor authentication
Authentication servers
Machine authentication
User account policies
General
PCI DSS 3.2 two-factor authentication
Lockouts
Passwords
Custom user fields
Tokens
User management
Administrators
Local users
Remote users
Remote user sync rules
Guest users
User groups
Usage profile
Organizations
Realms
FortiTokens
MAC devices
RADIUS attributes
FortiToken physical device and FortiToken Mobile
FortiAuthenticator and FortiTokens
Monitoring FortiTokens
FortiToken device maintenance
FortiToken drift adjustment
Self-service portal
General
Access control
Self-registration
Token self-provisioning
Replacement messages
Device self-enrollment
Guest portals
Portals
Rules
Replacement messages
Smart Connect profiles
Remote authentication servers
General
LDAP
RADIUS
OAUTH
SAML
RADIUS service
Clients
Client profile attributes
Extensible Authentication Protocol
Services
Custom dictionaries
LDAP service
General
Directory tree overview
Creating the directory tree
Configuring a FortiGate unit for FortiAuthenticator LDAP
OAuth Service
Settings
Applications
SAML IdP
General
Replacement messages
Service providers
FortiAuthenticator agents
FortiAuthenticator Agent for Microsoft Windows
FortiAuthenticator Agent for Outlook Web Access
Port-based network access control
Extensible Authentication Protocol
FortiAuthenticator and EAP
FortiAuthenticator unit configuration
Configuring certificates for EAP
Configuring switches and wireless controllers to use 802.1X authentication
Non-compliant devices
Fortinet Single Sign-On
General settings
To configure FortiAuthenticator FSSO polling:
Configuring FortiGate units for FSSO
Portal services
Kerberos
SAML authentication
Windows event log sources
RADIUS accounting sources
Syslog sources
Syslog sources
Matching rules
Predefined rules
Fine-grained controls
SSO users and groups
Domain groupings
FortiGate filtering
IP filtering rules
Tiered architecture
FortiClient SSO Mobility Agent
Fake client protection
RADIUS Single Sign-On
RADIUS accounting proxy
General
Rule sets
Sources
Destinations
Monitoring
SSO
Domains
SSO sessions
Windows event log sources
FortiGates
DC/TS agents
NTLM statistics
Authentication
Locked-out users
RADIUS sessions
Windows AD
Windows device logins
Learned RADIUS users
Certificate management
Policies
Certificate expiry
End entities
Certificate authorities
Local CAs
Certificate revocations lists
Trusted CAs
SCEP
General
Enrollment requests
Logging
Log access
Log configuration
Log settings
Syslog servers
Audit reports
Users audit
Troubleshooting
Troubleshooting
Debug logs
RADIUS debugging
TCP stack hardening
LDAP filter syntax
Examples
Caveats
Change Log
Home
FortiAuthenticator 6.0.4
Administration Guide
Administration Guide
What's new in FortiAuthenticator
FortiAuthenticator 6.0.4
FortiAuthenticator 6.0.3
FortiAuthenticator 6.0.2
FortiAuthenticator 6.0.1
FortiAuthenticator 6.0.0
Introduction
Before you begin
How this guide is organized
Registering your Fortinet product
Setup
Initial setup
FortiAuthenticator-VM setup on VMware
Administrative access
Adding FortiAuthenticator to your network
Maintenance
Backing up the configuration
Upgrading the firmware
Licensing
Swapping hard disks
CLI commands
Troubleshooting
FortiAuthenticator settings
FortiGate settings
System
Dashboard
Customizing the dashboard
System information widget
System resources widget
Authentication activity widget
User inventory widget
License information widget
Disk monitor widget
Top user lockouts widget
User lookup
Network
Interfaces
DNS
Static routing
Packet capture
Administration
System access
High availability
Firmware upgrade
Configuring auto-backup
SNMP
Licensing
FortiGuard
FortiNACs
FTP servers
Admin profiles
Messaging
SMTP servers
Email services
SMS gateways
Authentication
What to configure
Password-based authentication
Two-factor authentication
Authentication servers
Machine authentication
User account policies
General
PCI DSS 3.2 two-factor authentication
Lockouts
Passwords
Custom user fields
Tokens
User management
Administrators
Local users
Remote users
Remote user sync rules
Guest users
User groups
Usage profile
Organizations
Realms
FortiTokens
MAC devices
RADIUS attributes
FortiToken physical device and FortiToken Mobile
FortiAuthenticator and FortiTokens
Monitoring FortiTokens
FortiToken device maintenance
FortiToken drift adjustment
Self-service portal
General
Access control
Self-registration
Token self-provisioning
Replacement messages
Device self-enrollment
Guest portals
Portals
Rules
Replacement messages
Smart Connect profiles
Remote authentication servers
General
LDAP
RADIUS
OAUTH
SAML
RADIUS service
Clients
Client profile attributes
Extensible Authentication Protocol
Services
Custom dictionaries
LDAP service
General
Directory tree overview
Creating the directory tree
Configuring a FortiGate unit for FortiAuthenticator LDAP
OAuth Service
Settings
Applications
SAML IdP
General
Replacement messages
Service providers
FortiAuthenticator agents
FortiAuthenticator Agent for Microsoft Windows
FortiAuthenticator Agent for Outlook Web Access
Port-based network access control
Extensible Authentication Protocol
FortiAuthenticator and EAP
FortiAuthenticator unit configuration
Configuring certificates for EAP
Configuring switches and wireless controllers to use 802.1X authentication
Non-compliant devices
Fortinet Single Sign-On
General settings
To configure FortiAuthenticator FSSO polling:
Configuring FortiGate units for FSSO
Portal services
Kerberos
SAML authentication
Windows event log sources
RADIUS accounting sources
Syslog sources
Syslog sources
Matching rules
Predefined rules
Fine-grained controls
SSO users and groups
Domain groupings
FortiGate filtering
IP filtering rules
Tiered architecture
FortiClient SSO Mobility Agent
Fake client protection
RADIUS Single Sign-On
RADIUS accounting proxy
General
Rule sets
Sources
Destinations
Monitoring
SSO
Domains
SSO sessions
Windows event log sources
FortiGates
DC/TS agents
NTLM statistics
Authentication
Locked-out users
RADIUS sessions
Windows AD
Windows device logins
Learned RADIUS users
Certificate management
Policies
Certificate expiry
End entities
Certificate authorities
Local CAs
Certificate revocations lists
Trusted CAs
SCEP
General
Enrollment requests
Logging
Log access
Log configuration
Log settings
Syslog servers
Audit reports
Users audit
Troubleshooting
Troubleshooting
Debug logs
RADIUS debugging
TCP stack hardening
LDAP filter syntax
Examples
Caveats
Change Log
6.0.4
6.2.1
6.2.0
6.1.2
6.1.1
6.1.0
6.0.5
6.0.4
6.0.3
6.0.2
6.0.1
6.0.0
5.5.0
5.4.0
5.3.0
5.2.0
5.1.0
5.0.0
4.3.0
4.2.1
4.2.0
Download PDF
Copy Link
FortiAuthenticator
6.0.4
FortiAuthenticator
6.0.4 includes no new features.
FortiAuthenticator
6.0.4
FortiAuthenticator
6.0.4 includes no new features.
Link
PDF
TOC