Fortinet black logo

New Features

GUI support for Wireless client MAC authentication and MPSK returned through RADIUS 7.0.4

Copy Link
Copy Doc ID 4f6cd3c1-22cb-11eb-96b9-00505692583a:318986
Download PDF

GUI support for Wireless client MAC authentication and MPSK returned through RADIUS 7.0.4

This enhancement adds GUI support to enable and disable the RADIUS MAC MPSK authentication function described in Wireless client MAC authentication and MPSK returned through RADIUS 7.0.2

Wireless clients can be authenticated using MAC authentication and Multiphase Shift Keying (MPSK) against a RADIUS server. The MPSK passphrases can be dynamically passed from the RADIUS server when the client MAC is authenticated by the RADIUS server, instead of statically storing them on the FortiGate. The passphases are cached on the FortiGate for future authentication, with a timeout period configured for each VAP.

To enable the RADIUS MAC Authentication - GUI:
  1. Go to WiFi & Switch Controller > SSIDs, and click Create New > SSID or edit an existing SSID.
  2. In Security mode, select WPA2 Personal.
  3. Under Pre-shared Key Mode, select Multiple.

  4. Enable RADIUS MAC authentication.

    The Authentication timeout field loads. You can change the timer from 1800 to 86400 seconds.

  5. Enable RADIUS server and select a server.

  6. When you are finished, click OK.

GUI support for Wireless client MAC authentication and MPSK returned through RADIUS 7.0.4

This enhancement adds GUI support to enable and disable the RADIUS MAC MPSK authentication function described in Wireless client MAC authentication and MPSK returned through RADIUS 7.0.2

Wireless clients can be authenticated using MAC authentication and Multiphase Shift Keying (MPSK) against a RADIUS server. The MPSK passphrases can be dynamically passed from the RADIUS server when the client MAC is authenticated by the RADIUS server, instead of statically storing them on the FortiGate. The passphases are cached on the FortiGate for future authentication, with a timeout period configured for each VAP.

To enable the RADIUS MAC Authentication - GUI:
  1. Go to WiFi & Switch Controller > SSIDs, and click Create New > SSID or edit an existing SSID.
  2. In Security mode, select WPA2 Personal.
  3. Under Pre-shared Key Mode, select Multiple.

  4. Enable RADIUS MAC authentication.

    The Authentication timeout field loads. You can change the timer from 1800 to 86400 seconds.

  5. Enable RADIUS server and select a server.

  6. When you are finished, click OK.