Fortinet black logo

NGFW Deployment

7.0.0

User group objects

User group objects

In addition to the admin user group, the following user groups are defined and use the RADIUS server for authentication:

  • Engineering
  • Staff
  • IT

These groups will be used for wireless authentication, allowing those who belong to the IT and Engineering Active Directory User Groups to access the IT_WiFi and Engineering_WiFi networks respectively, while a third group will allow anyone part of the Staff user group to connect to Staff_WiFi.

Note

IT and Engineering LAB networks are only available on WiFi through their respective networks.

To create user groups on FortiGate:
  1. Go to User & Authentication > User Groups, and click Create New.
  2. Complete the following options:

    NameEngineering
    TypeFirewall
  3. In the Remote Groups section, click Add. The Add Group Match pane is displayed.
  4. Complete the following options, and click OK:

    Remote ServerRADIUS
    GroupsClick Specify, and type Engineering.

    The remote group is created.

  5. Click OK. The new user group is displayed.
  6. Repeat this procedure to create a user group named Staff by using the following settings:

    NameStaff
    TypeFirewall

    Remote Groups

    Click Add.

    Remote Server

    Select RADIUS.

    Groups

    Click Specify, and type Staff.

    The remote group is created.

  7. Repeat this procedure to create a user group named IT by using the following settings:

    NameIT
    TypeFirewall

    Remote Groups

    Click Add.

    Remote Server

    Select RADIUS.

    Groups

    Click Specify, and type IT.

    The remote group is created. All groups are displayed.

User group objects

In addition to the admin user group, the following user groups are defined and use the RADIUS server for authentication:

  • Engineering
  • Staff
  • IT

These groups will be used for wireless authentication, allowing those who belong to the IT and Engineering Active Directory User Groups to access the IT_WiFi and Engineering_WiFi networks respectively, while a third group will allow anyone part of the Staff user group to connect to Staff_WiFi.

Note

IT and Engineering LAB networks are only available on WiFi through their respective networks.

To create user groups on FortiGate:
  1. Go to User & Authentication > User Groups, and click Create New.
  2. Complete the following options:

    NameEngineering
    TypeFirewall
  3. In the Remote Groups section, click Add. The Add Group Match pane is displayed.
  4. Complete the following options, and click OK:

    Remote ServerRADIUS
    GroupsClick Specify, and type Engineering.

    The remote group is created.

  5. Click OK. The new user group is displayed.
  6. Repeat this procedure to create a user group named Staff by using the following settings:

    NameStaff
    TypeFirewall

    Remote Groups

    Click Add.

    Remote Server

    Select RADIUS.

    Groups

    Click Specify, and type Staff.

    The remote group is created.

  7. Repeat this procedure to create a user group named IT by using the following settings:

    NameIT
    TypeFirewall

    Remote Groups

    Click Add.

    Remote Server

    Select RADIUS.

    Groups

    Click Specify, and type IT.

    The remote group is created. All groups are displayed.