01.02.2013 Views

Fortinet and AAA Server - HID Global

Fortinet and AAA Server - HID Global

Fortinet and AAA Server - HID Global

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

ActivIdentity 4TRESS <strong>AAA</strong> Web Tokens <strong>and</strong> SSL VPN <strong>Fortinet</strong> Secure Access | Integration H<strong>and</strong>book<br />

Table of Contents<br />

1.0 Introduction ....................................................................................................................................................... 3<br />

1.1 Scope of Document .................................................................................................................................... 3<br />

1.2 Prerequisites .............................................................................................................................................. 3<br />

2.0 Secure Access Configuration ........................................................................................................................... 4<br />

2.1 Procedure 1: Configure the RADIUS Authentication <strong>Server</strong> ...................................................................... 4<br />

2.2 Procedure 2: Create New User Group ....................................................................................................... 5<br />

3.0 ActivIdentity 4TRESS <strong>AAA</strong> Configuration ......................................................................................................... 7<br />

3.1 Procedure 1: Configure Basic SSL VPN Settings ...................................................................................... 7<br />

3.2 Procedure 2: Configure the Portal .............................................................................................................. 9<br />

3.3 Procedure 3: Configure the FortiGate Replacement Message ................................................................ 10<br />

3.4 Procedure 4: Configure the Security Policy ............................................................................................. 13<br />

3.5 Procedure 5: Create Tunnel Mode Security Policy .................................................................................. 14<br />

3.6 Procedure 6: Configure Routing for Tunnel Mode ................................................................................... 16<br />

4.0 Configure 4TRESS <strong>AAA</strong> ................................................................................................................................. 17<br />

4.1 Procedure 1: Configure FortiGate Gate ................................................................................................... 17<br />

4.2 Procedure 2: Assign Group(s) to the FortiGate Gate ............................................................................... 19<br />

5.0 Configure for Soft Token Activation ................................................................................................................ 21<br />

5.1 Procedure 1: Enable Soft Token Activation ............................................................................................. 21<br />

5.2 Procedure 2: Configure Soft Token Activation Portal .............................................................................. 22<br />

6.0 Sample Authentication Using Web Soft Token Authentication ....................................................................... 25<br />

6.1 Prerequisite: User Enrolls Web Token <strong>and</strong> Computer ............................................................................. 25<br />

6.2 Authenticating with Web Soft Token Launched in the Sign-In Page ....................................................... 27<br />

P 2<br />

External Use | July 16, 2012 | © 2012 ActivIdentity

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!