Wi-Fi employee access – Fortinet

In this topic, you will learn how to configure Fortinet wireless controllers to work together with Portnox™ Cloud and 802.1X RADIUS authentication for Wi-Fi connections.

Important: The instructions for setting up third-party devices may change when the manufacturers update their firmware or release new models. To get the most accurate and current configuration guidance, please refer to the documentation provided by the manufacturer.

FortiWLC

The following is a configuration process for the FortiWLC series of controllers, based on FortiWLC 50D with FortiOS 8.3.

  1. In the FortiOS web interface, navigate to Configuration > Security > RADIUS, and click on Add to add a RADIUS server.

    1. Specify a RADIUS Profile Name for the RADIUS server.
    2. Set the RADIUS Server Timeout to 20 seconds.
    3. Enter your cloud RADIUS details.
  2. Navigate to Configuration > Security > RADIUS, and click on Add to add a RADIUS accounting server.

    1. Specify a RADIUS Profile Name for the RADIUS accounting server.
    2. Set the RADIUS Server Timeout to 20 seconds.
    3. Enter your cloud RADIUS details.
      Note: The server IP and the secret are the same for both authentication and accounting, only ports are different.
  3. Navigate to Configuration > Security > Profile, and click on Add to add a new security profile.

    1. Specify a Security Profile Name.
    2. In Security Mode, select WPA2/CCMP-AES.
    3. In Primary RADIUS Profile Name, select the RADIUS server that you created in previous steps.
  4. Navigate to Configuration > Wireless > ESS, and click on Add to add a new ESS profile.

    1. In ESS Profile, specify a name for the ESS profile.
    2. In SSID, specify the WLAN SSID.
    3. In Security Profile, select the security profile you created in previous steps.
    4. In Primary RADIUS Accounting Server, select the RADIUS accounting server that you created in previous steps.