cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
59
Views
0
Helpful
1
Replies

Cisco ISE and Fortinet Standalone Switch integration

poornakumar2542
Level 1
Level 1

Hi Team,

 

Can anyone tell me how to do the integration between cisco ise and fortiswitch.And in cisco ise side i am using normal cisco network profile only is it enough for basic 802.1x authentication.

1 Reply 1

Ben Weber
Level 1
Level 1

Hey @poornakumar2542 

You shouldn't need to touch the ISE side of the house. The FortiSwitch can be configured to act as a standard 802.1X authenticator.

Firstly, configure the RADIUS server settings to point at your ISE PSNs.

Then you need to enable 802.1X authN on the relevant switchports and make sure the relevant VLANs that ISE will assign have been configured.

You should also set up RADIUS accounting.

If you are trying to use Fortinet attributes (aka VSAs), you need to import the FortiGate VSAs from this link into ISE: https://community.fortinet.com/t5/FortiGate/Technical-Tip-Fortinet-s-RADIUS-Dictionary-and-VSAs-latest/ta-p/194896

If you just want standard 802.1X authN, that should all be up and running once you've set up the RADIUS settings on the FortiSwitch.

 

- BW
Please rate posts if they have been helpful.