10-02-2018 09:00 AM
We're using Clearpass v6.7patch5, Aruba Instant v188.8.131.52 and FortiGate v6.0.2.
The issue is with Radius Accounting Proxy. Clearpass stops to send the attribute Filter-ID to FortiGate so the user won't get the correct Usergroup configured on the FortiGate unit.
I've started a packet capture on FortiGate unit and can see the Radius Accounting hitting the interface, but the attribute is missing.
On ClearPass, Live Monitoring > Accounting, I can see the username and after some minutes it's stops. The IAP configured accounting interim update is 2min.
I used the Fortinet TechNote and configured only the Accounting Proxy option.
| André Fernandes | ACCP| ACMP | ACSP | CWNA | CCNA |
Solved! Go to Solution.