FortiManager 7.2.1 RADIUS Configuration RSA Ready Implementation Guide
Originally Published: 2023-03-24
This section describes how to integrate FortiManager with RSA Authentication Manager using RADIUS.
Procedure
- Sign into the FortiManager GUI and use the correct ADOM according to your company to be able to access the System Settings.
- On the left pane, select Admin, then select Remote Authentication Server from the dropdown. Select Create New and click RADIUS Server.
- Enter the name of the RADIUS server as per your needs, and fill in the following details:
- Enter the IP address/FQDN details from the RSA Authentication Manager in Server Name/IP and enter the shared secret.
- Configure a secondary RADIUS server if needed.
- Select PAP as the Authentication Type.
- On the left pane, under Admin, select Administrator to choose who is prompted for RSA RADIUS authentication.
- Select Create New and enter the username in the User Name field.
- You can choose an admin username, or you can choose to authenticate all admins by selecting Match all users on the remote server checkbox.
- Select RADIUS from the Admin Type dropdown and then select the RADIUS server created in step 3.
- Sign into the RSA Authentication Manager, access the security console then go to RADIUS > RADIUS Clients > Add new.
- Select Save & Create Associated RSA Agent > Save > Yes, save agent. You can add the hostname to the FQDN of the FortiManager as well.
- Create a RADIUS Profile to return a certain RADIUS Attribute back to the FortiManager like Fortinet-Access-Profile, to return a profile created on FortiManager for authorization, like Restricted_User.
Note: You can apply the profile back to the FortiManager as it rejects any profile override by default. Tio do this, go to the FortiManager through CLI and execute the following commands under the needed Access Profile: - Sign into RSA Security Console > RADIUS > RADIUS Profiles > Add new.
- In the Return List Attributes, add the attribute: Fortinet-Group-Name to specify the group to be returned to FortiManager for Authorization reasons.
- Select Save.
Configuration is complete.
Return to the main page.
Related Articles
Okta Agent - RADIUS Configuration - Cloud Authentication Service - RSA Ready Implementation Guide 182Number of Views Okta Agent - RADIUS Configuration - Authentication Manager - RSA Ready Implementation Guide 116Number of Views CyberArk Password Vault Web Access - RADIUS Configuration with Authentication Manager - RSA Ready Implementation Guide 133Number of Views FortiGate Firewall - RADIUS Configuration Using SSL VPN - RSA Ready Implementation Guide 88Number of Views FortiGate Firewall - RADIUS Configuration Using Admin Access UI - RSA Ready Implementation Guide 69Number of Views
Trending Articles
Downloading RSA Authentication Manager license files or RSA Software token seed records RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide RSA Authentication Manager 8.9 Release Notes (January 2026) RSA-2026-07: RSA Identity Router Security Update for Third-Party Component Vulnerabilities Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory
Don't see what you're looking for?