{"id":19420,"date":"2022-04-19T15:11:44","date_gmt":"2022-04-19T07:11:44","guid":{"rendered":"https:\/\/blog.pmail.idv.tw\/?p=19420"},"modified":"2022-04-19T15:11:44","modified_gmt":"2022-04-19T07:11:44","slug":"windows-server-2022-nps-with-mfa","status":"publish","type":"post","link":"https:\/\/blog.pmail.idv.tw\/?p=19420","title":{"rendered":"Windows Server 2022 NPS with mfa"},"content":{"rendered":"<p>\u9019\u6b21\u8981fortinet ssl vpn \u4f7f\u7528\uff21\uff24\u9a57\u8b49\u53ca \u6574\u5408 azure ad mfa\uff0c\u4f7f\u7528windows sever 2022 \u64d4\u4efbNPS\u4e3b\u6a5f(\u5df2\u52a0\u5165\u7db2\u57df)<\/p>\n<p><!--more--><\/p>\n<p>\u5b89\u88ddNPS\u89d2\u8272\uff0c\u5728\u4f3a\u670d\u5668\u89d2\u8272\u4e2d\u52fe\u9078[\u7db2\u8def\u539f\u5247\u8207\u5b58\u53d6\u670d\u52d9]\u5373\u53ef\u5b89\u88dd<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps1.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"WS2022-nps1\" style=\"border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border-top-width: 0px\" border=\"0\" alt=\"WS2022-nps1\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps1_thumb.jpg\" width=\"644\" height=\"461\"><\/a><\/p>\n<p>\u5b89\u88dd\u5b8c\u6210\u5f8c\uff0c\u958b\u555fNPS\u7ba1\u7406\u5de5\u5177<\/p>\n<p>\u5728NPS\u7bc0\u9ede &gt; \u5c07\u8a72\u4e3b\u6a5f\u8a3b\u518a\u5230AD\u4e2d<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps2.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"WS2022-nps2\" style=\"border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border-top-width: 0px\" border=\"0\" alt=\"WS2022-nps2\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps2_thumb.jpg\" width=\"644\" height=\"380\"><\/a><\/p>\n<p>\u9ede\u9078 \u78ba\u8a8d<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps3.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"WS2022-nps3\" style=\"border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border-top-width: 0px\" border=\"0\" alt=\"WS2022-nps3\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps3_thumb.jpg\" width=\"644\" height=\"286\"><\/a><\/p>\n<p>\u5b8c\u6210<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps4.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"WS2022-nps4\" style=\"border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border-top-width: 0px\" border=\"0\" alt=\"WS2022-nps4\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps4_thumb.jpg\" width=\"644\" height=\"245\"><\/a><\/p>\n<p>&nbsp;<\/p>\n<p>\u4e0b\u8f09Azure AD MFA NPS\u64f4\u5145\u529f\u80fd<\/p>\n<p><a title=\"https:\/\/www.microsoft.com\/en-us\/download\/details.aspx?id=54688\" href=\"https:\/\/www.microsoft.com\/en-us\/download\/details.aspx?id=54688\">https:\/\/www.microsoft.com\/en-us\/download\/details.aspx?id=54688<\/a><\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps5.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"WS2022-nps5\" style=\"border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border-top-width: 0px\" border=\"0\" alt=\"WS2022-nps5\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps5_thumb.jpg\" width=\"644\" height=\"400\"><\/a><\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps6.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"WS2022-nps6\" style=\"border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border-top-width: 0px\" border=\"0\" alt=\"WS2022-nps6\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps6_thumb.jpg\" width=\"644\" height=\"406\"><\/a><\/p>\n<p>\u958b\u555fporwershell \u8996\u7a97<\/p>\n<p>\u5207\u63db\u81f3 \u8def\u5f91C:\\Program Files\\Microsoft\\AzureMfa\\Config<\/p>\n<p>\u57f7\u884c.\\<em>AzureMfsNpsExtnConfigSetup.ps1<\/em><\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps8.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"WS2022-nps8\" style=\"border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border-top-width: 0px\" border=\"0\" alt=\"WS2022-nps8\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps8_thumb.jpg\" width=\"644\" height=\"289\"><\/a><\/p>\n<p>\u8f38\u5165azure ad \u7ba1\u7406\u8005\u5e33\u865f\u5bc6\u78bc<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps9.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"WS2022-nps9\" style=\"border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border-top-width: 0px\" border=\"0\" alt=\"WS2022-nps9\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps9_thumb.jpg\" width=\"596\" height=\"484\"><\/a><\/p>\n<p>\u8f38\u5165\u79df\u7528\u6236ID<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps10.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"WS2022-nps10\" style=\"border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border-top-width: 0px\" border=\"0\" alt=\"WS2022-nps10\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps10_thumb.jpg\" width=\"644\" height=\"125\"><\/a><\/p>\n<p>\u5b8c\u6210\u5f8c\u6703\u81ea\u52d5\u91cd\u65b0\u555f\u52d5NPS\u670d\u52d9<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps11.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"WS2022-nps11\" style=\"border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border-top-width: 0px\" border=\"0\" alt=\"WS2022-nps11\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps11_thumb.jpg\" width=\"644\" height=\"183\"><\/a><\/p>\n<p>&nbsp;<\/p>\n<p>forti \u8a2d\u5b9atimeout\u6642\u9593<\/p>\n<p>config system global set remoteauthtimeout 60<a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps12.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"WS2022-nps12\" style=\"border-left-width: 0px; border-right-width: 0px; background-image: none; border-bottom-width: 0px; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border-top-width: 0px\" border=\"0\" alt=\"WS2022-nps12\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/WS2022-nps12_thumb.jpg\" width=\"558\" height=\"484\"><\/a><\/p>\n<p>\u4ee5\u4e0a\u5c31\u5b8c\u6210 NPS \u6574\u5408office 365 mfa \u76f8\u95dc\u5b89\u88dd<\/p>\n<p>\u63a5\u4e0b\u4f86\u7684\u9700\u6c42\u662f\u7528\u6236\u7aef\u8981\u4f7f\u7528fortinetClinet\u9023\u7dda\u9700\u4f7f\u7528AD\u5e33\u865f\u5bc6\u78bc\u624d\u53ef\u4ee5<\/p>\n<p><font style=\"background-color: #ffff00\">\u4e14\u5fc5\u9808\u96b8\u5c6c\u7279\u5b9aVPN Group\u6210\u54e1\u624d\u53ef\u4ee5\u9023\u7dda\u6210\u529f\uff0c\u4e26\u4e0d\u662f\u6240\u6709AD\u5e33\u865f\u90fd\u53ef\u4ee5\u9023\u7dda<\/font><\/p>\n<p>\u8a2d\u5b9a:<\/p>\n<p>1.\u65b0\u589eRADIUS \u7528\u6236\u7aef\u3002\u56e0\u70baNPS \u662f\u6211\u5011\u7684RADIUS Server\uff0cFortigate \u81ea\u7136\u800c\u7136\u5c31\u6210\u4e86\u6211\u5011\u7684\u7528\u6236\u7aef\uff0c\u6240\u4ee5\u8acb\u52d9\u5fc5\u8f38\u5165\u5176IP \u4f4d\u5740\uff0c\u53caServer \u7aef\u548c\u7528\u6236\u7aef\u7684\u6e9d\u901a\u6642\u6240\u9700\u8981\u7684\u5171\u7528\u5bc6\u78bc<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_134625.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"2022-04-19_134625\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"2022-04-19_134625\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_134625_thumb.jpg\" width=\"532\" height=\"484\"><\/a><\/p>\n<p>\u53cd\u4e4b\u5728Fortinet \u4e0a\u9762\u9700\u8981\u65b0\u589e\u4e00\u7d44 RADIUS <\/p>\n<p>\u8f38\u5165\u540d\u7a31 : NPS01 (\u81ea\u8a02) \uff0cNPS&nbsp; IP \uff0c\u53ca\u5171\u7528\u5bc6\u78bc<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_134934.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"2022-04-19_134934\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"2022-04-19_134934\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_134934_thumb.jpg\" width=\"644\" height=\"460\"><\/a><\/p>\n<p>2.Fortinet \u65b0\u589euser Group <\/p>\n<p>=&gt; \u8acb\u5230 User &amp; Authentication =&gt; User Group \u65b0\u589e\u4e00\u500bUser Group <\/p>\n<p>\u7bc4\u4f8b \u5efa\u7acb\u4e00\u500bHQ-SSL-VPN-Group<\/p>\n<p>Remote&nbsp; Group :&nbsp; \u5c07 RADIUS&nbsp; Server \u52a0\u9032\u4f86<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_135827.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"2022-04-19_135827\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"2022-04-19_135827\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_135827_thumb.jpg\" width=\"644\" height=\"316\"><\/a><\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_135855.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"2022-04-19_135855\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"2022-04-19_135855\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_135855_thumb.jpg\" width=\"644\" height=\"19\"><\/a><\/p>\n<p>\u57fa\u672c\u4e0a\u4ee5\u4e0a\u8a2d\u5b9a\u5b8c\u6210\u5f8c\u9810\u8a2dNPS \u4e0a\u7684\u9023\u7dda\u8981\u6c42\u539f\u5247\u548c\u7db2\u8def\u539f\u5247\u53ef\u4ee5\u4e0d\u7528\u505a\u4efb\u4f55\u8abf\u6574\u5c31\u53ef\u4ee5\u4f7f\u7528ad\u5e33\u6236\u9023\u4f86\u9023\u7ddassl vpn,\u4e14\u6703\u8df3\u51fa\u5fae\u8edf\u4e8c\u968e\u6bb5\u9a57\u8b49 <font style=\"background-color: #ffff00\">(\u53e6\u5916fortinet ssl vpn \u53capolicy \u76f8\u95dc\u8a2d\u5b9a\u4e0d\u7279\u5225\u8aaa\u660e)<\/font><\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_144141.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"2022-04-19_144141\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"2022-04-19_144141\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_144141_thumb.jpg\" width=\"644\" height=\"159\"><\/a><\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_144253.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"2022-04-19_144253\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"2022-04-19_144253\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_144253_thumb.jpg\" width=\"644\" height=\"65\"><\/a><\/p>\n<p>\u4f46\u662fAD\u5e33\u6236\u9700\u8981\u52fe\u9078[\u5141\u8a31\u5b58\u53d6]\u53ef\u4ee5\u9023\u7dda\u6210\u529f\u3002<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_144541.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"2022-04-19_144541\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"2022-04-19_144541\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_144541_thumb.jpg\" width=\"473\" height=\"484\"><\/a><\/p>\n<p>\u82e5\u9700\u8981\u8a2d\u5b9a\u7279\u5b9a\u7fa4\u7d44\u5247\u65b0\u589e\u4e00\u500b[\u7db2\u8def\u539f\u5247]<\/p>\n<p>\u689d\u4ef6\u8a2d\u5b9a\u7279\u5b9a\u7fa4\u7d44<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_144744.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"2022-04-19_144744\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"2022-04-19_144744\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_144744_thumb.jpg\" width=\"644\" height=\"460\"><\/a>&nbsp;<\/p>\n<p>\u9a57\u8b49\u65b9\u5f0f\u90e8\u5206\u8a18\u5f97\u8981\u52fe [\u52a0\u5bc6\u9a57\u8b49]\u53ca[\u672a\u52a0\u5bc6\u9a57\u8b49]<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_145015.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"2022-04-19_145015\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"2022-04-19_145015\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_145015_thumb.jpg\" width=\"605\" height=\"484\"><\/a><\/p>\n<p>\u6b64\u6642AD\u5e33\u6236\uff0c\u64a5\u5165\u8a2d\u5b9a\u9078[\u900f\u904eNPS\u7db2\u8def\u539f\u5247\u63a7\u5236]\u5373\u53ef(\u9019\u662f\u9810\u8a2d\u503c)<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_150950.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"2022-04-19_150950\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"2022-04-19_150950\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_150950_thumb.jpg\" width=\"434\" height=\"484\"><\/a><\/p>\n<p>\u53e6\u5916\u8aaa\u660e<\/p>\n<p>\u56e0\u70baNPS \u6574\u5408 multifactor authentication \uff0c\u53c8\u56e0\u70ba\u5fae\u8edfAuthenticator app \u6709<\/p>\n<p>1.\u7c21\u8a0a\u9a57\u8b49<\/p>\n<p>2.Microsoft Authenticator &#8211; \u901a\u77e5<\/p>\n<p>3.Microsoft Authenticator \u61c9\u7528\u7a0b\u5f0f\u6216\u786c\u9ad4token<\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_145805.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"2022-04-19_145805\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"2022-04-19_145805\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_145805_thumb.jpg\" width=\"644\" height=\"379\"><\/a><\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/S__33734787.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"S__33734787\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"S__33734787\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/S__33734787_thumb.jpg\" width=\"404\" height=\"484\"><\/a><\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/4233A39B-72B6-4E72-B704-1F0B79F593FD.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"4233A39B-72B6-4E72-B704-1F0B79F593FD\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"4233A39B-72B6-4E72-B704-1F0B79F593FD\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/4233A39B-72B6-4E72-B704-1F0B79F593FD_thumb.jpg\" width=\"572\" height=\"484\"><\/a><\/p>\n<p>\u6839\u64dafortinet \u6587\u4ef6\u6240\u4ee5\u9a57\u8b49\u65b9\u5f0f\u9700\u8981\u7279\u5225\u52fe\u9078\uff0c\u5426\u5247\u7121\u6cd5\u9a57\u8b49\u6210\u529f<\/p>\n<p><a title=\"https:\/\/docs.fortinet.com\/document\/fortigate-public-cloud\/6.2.0\/azure-administration-guide\/517582\/configuring-forticlient-vpn-with-multifactor-authentication\" href=\"https:\/\/docs.fortinet.com\/document\/fortigate-public-cloud\/6.2.0\/azure-administration-guide\/517582\/configuring-forticlient-vpn-with-multifactor-authentication\">https:\/\/docs.fortinet.com\/document\/fortigate-public-cloud\/6.2.0\/azure-administration-guide\/517582\/configuring-forticlient-vpn-with-multifactor-authentication<\/a><\/p>\n<p><a href=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_144944.jpg\"><img loading=\"lazy\" decoding=\"async\" title=\"2022-04-19_144944\" style=\"border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px\" border=\"0\" alt=\"2022-04-19_144944\" src=\"https:\/\/blog.pmail.idv.tw\/wp-content\/uploads\/2022\/04\/2022-04-19_144944_thumb.jpg\" width=\"644\" height=\"237\"><\/a><\/p>\n<ul>\n<li>PAP \u652f\u6301\u96f2\u4e2d\u7684\u6240\u6709Azure MFA \u8eab\u4efd\u9a57\u8b49\u65b9\u6cd5\uff1a\u96fb\u8a71\u3001\u77ed\u4fe1\u3001\u6d88\u606f\u3001\u79fb\u52d5\u61c9\u7528\u901a\u77e5\u548c\u79fb\u52d5\u61c9\u7528\u9a57\u8b49\u78bc\u3002\n<li>CHAPv2 \u652f\u6301\u96fb\u8a71\u548c\u79fb\u52d5\u61c9\u7528\u7a0b\u5e8f\u901a\u77e5\u3002<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<p>\u53c3\u8003\u9023\u7d50<\/p>\n<p><a title=\"https:\/\/docs.microsoft.com\/zh-tw\/azure\/active-directory\/authentication\/howto-mfa-nps-extension-vpn\" href=\"https:\/\/docs.microsoft.com\/zh-tw\/azure\/active-directory\/authentication\/howto-mfa-nps-extension-vpn\">https:\/\/docs.microsoft.com\/zh-tw\/azure\/active-directory\/authentication\/howto-mfa-nps-extension-vpn<\/a><\/p>\n<p><a title=\"https:\/\/www.petenetlive.com\/kb\/article\/0001759\" href=\"https:\/\/www.petenetlive.com\/kb\/article\/0001759\">https:\/\/www.petenetlive.com\/kb\/article\/0001759<\/a><\/p>\n<p><a title=\"https:\/\/www.ultraviolet.network\/post\/fortigate-ssl-vpn-with-azure-ad-mfa\" href=\"https:\/\/www.ultraviolet.network\/post\/fortigate-ssl-vpn-with-azure-ad-mfa\">https:\/\/www.ultraviolet.network\/post\/fortigate-ssl-vpn-with-azure-ad-mfa<\/a><\/p>\n<p><a title=\"https:\/\/pliantcloud.com\/blog\/2018\/9\/7\/how-to-setup-fortinet-multifactor-vpn\" href=\"https:\/\/pliantcloud.com\/blog\/2018\/9\/7\/how-to-setup-fortinet-multifactor-vpn\">https:\/\/pliantcloud.com\/blog\/2018\/9\/7\/how-to-setup-fortinet-multifactor-vpn<\/a><\/p>\n<p><a title=\"https:\/\/techgenix.com\/azure-mfa-existing-vpn\/\" href=\"https:\/\/techgenix.com\/azure-mfa-existing-vpn\/\">https:\/\/techgenix.com\/azure-mfa-existing-vpn\/<\/a><\/p>\n<p><a title=\"https:\/\/docs.microsoft.com\/zh-tw\/azure\/active-directory\/authentication\/howto-mfa-nps-extension\" href=\"https:\/\/docs.microsoft.com\/zh-tw\/azure\/active-directory\/authentication\/howto-mfa-nps-extension\">https:\/\/docs.microsoft.com\/zh-tw\/azure\/active-directory\/authentication\/howto-mfa-nps-extension<\/a><\/p>\n<p><a title=\"https:\/\/pio.nz\/2021\/02\/13\/fortigate-sslvpn-with-azure-mfa\/\" href=\"https:\/\/pio.nz\/2021\/02\/13\/fortigate-sslvpn-with-azure-mfa\/\">https:\/\/pio.nz\/2021\/02\/13\/fortigate-sslvpn-with-azure-mfa\/<\/a><\/p>\n<p><a title=\"https:\/\/docs.microsoft.com\/en-us\/azure\/active-directory\/authentication\/howto-mfa-nps-extension-vpn#install-and-configure-the-nps-extension\" href=\"https:\/\/docs.microsoft.com\/en-us\/azure\/active-directory\/authentication\/howto-mfa-nps-extension-vpn#install-and-configure-the-nps-extension\">https:\/\/docs.microsoft.com\/en-us\/azure\/active-directory\/authentication\/howto-mfa-nps-extension-vpn#install-and-configure-the-nps-extension<\/a><\/p>\n<p><a title=\"https:\/\/pio.nz\/2021\/02\/13\/fortigate-sslvpn-with-azure-mfa\/\" href=\"https:\/\/pio.nz\/2021\/02\/13\/fortigate-sslvpn-with-azure-mfa\/\">https:\/\/pio.nz\/2021\/02\/13\/fortigate-sslvpn-with-azure-mfa\/<\/a><\/p>\n<p><a title=\"https:\/\/www.petenetlive.com\/kb\/article\/0001725\" href=\"https:\/\/www.petenetlive.com\/kb\/article\/0001725\">https:\/\/www.petenetlive.com\/kb\/article\/0001725<\/a><\/p>\n<p>ASA <\/p>\n<p><a title=\"https:\/\/www.petenetlive.com\/KB\/Article\/0000685\" href=\"https:\/\/www.petenetlive.com\/KB\/Article\/0000685\">https:\/\/www.petenetlive.com\/KB\/Article\/0000685<\/a><\/p>\n<p><a title=\"https:\/\/mistertanuki.blogspot.com\/2018\/07\/enable-fortigate-2fa-with-free-google-authenticator-part-2.html\" href=\"https:\/\/mistertanuki.blogspot.com\/2018\/07\/enable-fortigate-2fa-with-free-google-authenticator-part-2.html\">https:\/\/mistertanuki.blogspot.com\/2018\/07\/enable-fortigate-2fa-with-free-google-authenticator-part-2.html<\/a><\/p>\n<div class=\"21cd169d3c0f71e95b84db320302cb4a\" data-index=\"1\" style=\"float: right; margin:10px 0 10px 10px;\">\n<script async src=\"https:\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-8711325745898650\"\r\n     crossorigin=\"anonymous\"><\/script>\n<\/div>\n\n<div style=\"font-size: 0px; height: 0px; line-height: 0px; margin: 0; padding: 0; clear: both;\"><\/div>","protected":false},"excerpt":{"rendered":"<p>\u9019\u6b21\u8981fortinet ssl vpn \u4f7f\u7528\uff21\uff24\u9a57\u8b49\u53ca \u6574\u5408 azure ad  &hellip; <a href=\"https:\/\/blog.pmail.idv.tw\/?p=19420\">\u95b1\u8b80\u5168\u6587 <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"ngg_post_thumbnail":0,"footnotes":""},"categories":[180,179],"tags":[],"class_list":["post-19420","post","type-post","status-publish","format-standard","hentry","category-nps-2022","category-windows-server-2022"],"_links":{"self":[{"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/posts\/19420","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=19420"}],"version-history":[{"count":2,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/posts\/19420\/revisions"}],"predecessor-version":[{"id":19424,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=\/wp\/v2\/posts\/19420\/revisions\/19424"}],"wp:attachment":[{"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=19420"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=19420"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.pmail.idv.tw\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=19420"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}