Fortinet black logo
7.2.0

Considerations

Considerations

  • Includes Multiple VDOM/Split-Task VDOM support.

  • Includes FOS 7.2/7.3 support.

  • FortiNAC will frequently poll the FortiGate for L3 information. For details see Appendix.

  • FortiGate can only support one FSSO agent sending tags for a specific endpoint IP address. If there are multiple agents, the FortiGate entries will be overwritten when other FSSO agents send information for the same endpoint IP. Therefore, the following should be done prior to integration:

  • Fabric connector connections and firewall policies can be configured at the Fortigate or the FortiManager. For the purposes of this document, a single Fortigate integration is being configured.

  • The FortiGate will remove all of the applicable SSO Logins when a Collector Agent (FortiNAC) has been disconnected for 300 seconds (5 minutes). This 5-minute period is internally hard set on the FortiGate and not configurable.

Considerations

  • Includes Multiple VDOM/Split-Task VDOM support.

  • Includes FOS 7.2/7.3 support.

  • FortiNAC will frequently poll the FortiGate for L3 information. For details see Appendix.

  • FortiGate can only support one FSSO agent sending tags for a specific endpoint IP address. If there are multiple agents, the FortiGate entries will be overwritten when other FSSO agents send information for the same endpoint IP. Therefore, the following should be done prior to integration:

  • Fabric connector connections and firewall policies can be configured at the Fortigate or the FortiManager. For the purposes of this document, a single Fortigate integration is being configured.

  • The FortiGate will remove all of the applicable SSO Logins when a Collector Agent (FortiNAC) has been disconnected for 300 seconds (5 minutes). This 5-minute period is internally hard set on the FortiGate and not configurable.