question

gwdolorin avatar image
0 Likes"
gwdolorin asked

How to configure a WPA3 SAE PK enabled SSID with Fortigate 40F & FortiAP 231F?

I have checked out this configurations on fortinet docs, but these articles are way too general.

And these general steps hardly help me make a workable configuration.

Again, here is thing:

0. fortiap 231F with 7.2.1 firmware and fortigate 40F 7.2.3 firmware

1. a wireless bridge SSID (WPA3 personal (no transition))

2. SAE-PK authentication to be enabled.

But an issue always exists, that if I change this SSID to a TUNNEL one, or non- local standalone one, this configuration will no longer be active on FortiAP, which from my eyes shows the LED turns

off.

3. Another issue is : only working pattern is a BRIDGE SSID with "local standalone" option, but

when my 11AX sta start to transmit AUTH frame to FortiAP-231, it returns nothing but an 802.11

acknowledgement, no further contact.

Could you R&D guys please tell what happened? or have you got any more detailed configuration guide to deal with this?


Thanks!



FortiGateFortiAPsecuritywi-fi
10 |600

Up to 8 attachments (including images) can be used with a maximum of 1.0 MiB each and 10.0 MiB total.

Metropolis avatar image
1 Like"
Metropolis answered

Hi gwdolorin,

Based on the documentation, SAE-PK authentication should work for both bridge mode and tunnel mode SSIDs:

https://docs.fortinet.com/document/fortiap/7.2.4/fortiwifi-and-fortiap-configuration-guide/233803/wpa3-security


I suggest considering contacting Fortinet Support via https://www.fortinet.com/support/contact to open a support ticket and have the support teams take a closer look at your FortiGate and FortiAP configuration.

10 |600

Up to 8 attachments (including images) can be used with a maximum of 1.0 MiB each and 10.0 MiB total.

gwdolorin avatar image
0 Likes"
gwdolorin answered
10 |600

Up to 8 attachments (including images) can be used with a maximum of 1.0 MiB each and 10.0 MiB total.

Write an Answer

Hint: Notify or tag a user in this post by typing @username.

Up to 10 attachments (including images) can be used with a maximum of 1.0 MiB each and 10.0 MiB total.

Welcome to FortiAnswers

FortiAnswers is the space dedicated to FortiSASE and FortiOS questions and suggestions.

  • Please review the Community guidelines
  • If you are a moderator, please refer to the Moderation guidelines
  • If something in the above guidelines is unclear, please post your question to the Community Feedback space or the Moderators' space