EasyManua.ls Logo

Fortinet FortiGate Series

Fortinet FortiGate Series
764 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
System Admin Administrators
FortiGate Version 4.0 MR1 Administration Guide
01-410-89802-20090903 277
http://docs.fortinet.com/Feedback
5 Select OK.
Configuring TACACS+ authentication for administrators
Terminal Access Controller Access-Control System (TACACS+) is a remote
authentication protocol that provides access control for routers, network access servers,
and other networked computing devices via one or more centralized servers.
If you have configured TACACS+ support and an administrator is required to authenticate
using a TACACS+ server, the FortiGate unit contacts the TACACS+ server for
authentication. If the TACACS+ server cannot authenticate the administrator, the
connection is refused by the FortiGate unit.
If you want to use an TACACS+ server to authenticate administrators in your VDOM, you
must configure the authentication before you create the administrator accounts. To do this
you need to:
configure the TACACS+ server
configure the FortiGate unit to access the TACACS+ server
create a user group with the TACACS+ server as a member.
To view the TACACS+ server list, go to User > Remote > TACACS+.
Figure 125: Example TACACS+ server list
To configure the FortiGate unit to access the TACACS+ server
1 Go to User > Remote > TACACS+.
2 Select Create New, or select the Edit icon beside an existing TACACS+ server.
3 Enter the Name that identifies the TACACS+ server.
4 For Server Name/IP, enter the server domain name or IP address of the TACACS+
server.
5 For Server Key, enter the key to access the TACACS+ server. The maximum number
is 16.
6 For Authentication Type, enter one of Auto, ASCII, PAP, CHAP, and MSCHAP. Auto
authenticates using PAP, MSCHAP, and CHAP (in that order).
7 Select OK.
Create New Add a new TACACS+ server.
Server The server domain name or IP address of the TACACS+ server.
Authentication Type The supported authentication method. TACACS+ authentication
methods include: Auto, ASCII, PAP, CHAP, and MSCHAP.
Delete icon Delete this TACACS+ server
Edit icon Edit this TACACS+ server.
Delete
Edit

Table of Contents

Other manuals for Fortinet FortiGate Series

Related product manuals