Assumptions
• VDOMs are not enabled
• The admin super_admin administrator account will be used for all FortiGate unit configuration.
• Any other devices on the network do not affect the topology of this example, and therefore are not included.
• Anywhere settings are not described, they are assumed to be default values.
• A RADIUS server is installed on a server or FortiAuthenticator unit and uses default attributes.
• BGP is used for any dynamic routing.
• Authentication event logging under Log&Report has been configured.