FortiGate firewalls utilize user-based authentication to provide more reliable security than simple IP-based filtering. Organizations can implement active authentication, which requires manual credential entry, or passive authentication, which identifies users transparently through background services. These systems support local storage of user data or integration with external servers like LDAP and RADIUS for centralized management. To increase protection, two-factor authentication can be added using physical or digital tokens to ensure that only verified individuals gain network access. Administrators manage these requirements by embedding specific user groups into firewall policies and configuring timeout settings to control session duration. Monitoring is handled through a dedicated dashboard, allowing for real-time tracking and management of all authenticated sessions.