cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
839
Views
0
Helpful
1
Replies

Fortinet VPN, Radius and groups

j-gray
Level 1
Level 1

Our VPN appliance currently uses LDAP-linked groups for Portal Mapping that allows access to specific networks for each group.

However, it appears that with the Duo MFA config, we can no longer leverage groups because we have to replace the LDAP Remote Server with the Duo Radius server, which support told me will not recognize any groups.

That being the case, it almost looks like we would have to have a different Radius (DAP) server for each Portal Mapping in order to still specify network access. This seems quite excessive.

Anyone else encounter this hurdle? TIA

1 Reply 1

DuoKristina
Cisco Employee
Cisco Employee

Hi @j-gray !

We have some knowledge base articles about Fortinet VPN that may help you.

Duo, not DUO.
Quick Links