FortiNAC
NOTE: FortiNAC is now named FortiNAC-F. For post-9.4 articles, see FortiNAC-F. FortiNAC is a zero-trust network access solution that provides users with enhanced visibility into the Internet of Things (IoT) devices on their enterprise networks.
FortiKoala
Staff
Staff
Article Id 191237

Description


Rogue wireless clients cannot connect to SSID.  Registered clients connecting to the SSID work as expected.


Scope


ForiNAC v9.x.

Solution

 

  1.  Navigate to Network > Inventory.
  2. Select the Controller/Access Point, then click on the SSIDs tab.
  3.  Select the affected SSID, 'right-click' and select SSID Configuration

If Registration State= Enforce, but a VLAN is not defined (Registration Access Value= (none)), NAC will reject the client (even if the RADIUS server accepts the user account).
 
Set the access value to the appropriate VLAN and click APPLY.Registration State= Enforce.
Registration Access Value= (Registration VLAN)