Fortinet white logo
Fortinet white logo

User Guide

Portal Rules

Portal Rules

The FortiGuest can be used to create a set of rules to allow user access to different portals that have been created. Each rule that is created is subject to certain conditions that you can create. If a rule is matched, the user is allowed or denied access to the portal and no other rules are checked. If no rule matches then the default rule is applied. You can Clone the portal rules to reuse them.

  1. Navigate to Guest Portal > Portal Rules and create a rule.

  2. Enter the Name of the new rule and provide a Description.
  3. Select Enabled and then select one of the portals you have created, or the default portal from the Portal drop down menu to direct the user to the relevant portal.
  4. Enable Deny Access if you do not wish to redirect the user to the guest portal.
  5. Select the applicable Timezone.
  6. Select the Conditions tab and create the conditions applicable to your portal rules.
  7. Click Add Condition and create new conditions. From the provided drop down lists, create a set of rules that apply to your portal. In this example, the user is redirected to the portal Login (specified in the previous step) on a given day of the week (except Saturday, Sunday, and Friday) between 12:30 and 15:00.

Notes:

  • Configure the following URL in the SSID for captive portal re-direction.
    {FortiGuest_IP or FQDN}/cp/portal/v1/cp/portal/{FGT_IP}
  • Add the following FQDNs in the allowed list in FortiGate, for captive portal login with Google Chrome (Windows).
    • Chrome: IP subnet 13.107.4.52 255.255.255.255
    • Fonts.gstatic.com FQDN
    • ssl.gstatic.com
  • RADIUS clients with a generic type cannot be added to any group.

  • A RADIUS client cannot belong to multiple groups.

Portal Rules

Portal Rules

The FortiGuest can be used to create a set of rules to allow user access to different portals that have been created. Each rule that is created is subject to certain conditions that you can create. If a rule is matched, the user is allowed or denied access to the portal and no other rules are checked. If no rule matches then the default rule is applied. You can Clone the portal rules to reuse them.

  1. Navigate to Guest Portal > Portal Rules and create a rule.

  2. Enter the Name of the new rule and provide a Description.
  3. Select Enabled and then select one of the portals you have created, or the default portal from the Portal drop down menu to direct the user to the relevant portal.
  4. Enable Deny Access if you do not wish to redirect the user to the guest portal.
  5. Select the applicable Timezone.
  6. Select the Conditions tab and create the conditions applicable to your portal rules.
  7. Click Add Condition and create new conditions. From the provided drop down lists, create a set of rules that apply to your portal. In this example, the user is redirected to the portal Login (specified in the previous step) on a given day of the week (except Saturday, Sunday, and Friday) between 12:30 and 15:00.

Notes:

  • Configure the following URL in the SSID for captive portal re-direction.
    {FortiGuest_IP or FQDN}/cp/portal/v1/cp/portal/{FGT_IP}
  • Add the following FQDNs in the allowed list in FortiGate, for captive portal login with Google Chrome (Windows).
    • Chrome: IP subnet 13.107.4.52 255.255.255.255
    • Fonts.gstatic.com FQDN
    • ssl.gstatic.com
  • RADIUS clients with a generic type cannot be added to any group.

  • A RADIUS client cannot belong to multiple groups.