Description This article describes how to process a logon event when
FortiAuthenticator acts as an FSSO CA and a Remote LDAP Server
configured with a UPN for the username attribute. There are cases when
the sAMAccountName attribute does not match the...
Description This article describes how to avoid radius authentication
failures for local admin-profiled accounts on FortiAuthenticator (FAC),
when a request comes from Radius-Clients. Scenario: FortiAuthenticator
acts as Radius Server. There are seve...
Description This article describes an issue when deleting a 'Local
Services' certificates in FortiAuthenticator (FAC). For instance, this
could be shown: Local service certificates selected as certificates for
cert_eap_server_cert, cert_radsec_server...
Description This article describes how to skip, and avoid getting the
error 'The operation is insecure' while adding FortiToken-400 to the end
user account on FortiAuthenticator (FAC). Scope FortiAuthenticator.
Solution This error happens when FortiA...
Description This article describes how administrators can create local
or remote administrator accounts with typically blocked symbols in the
account name. Scope FortiOS from 7.4.0 Solution As of FortiOS 7.4.0,
there are certain restrictions on symbo...
I would suggest considering placing your FGT before Mikrotik, and adjust
your firewall policies on FGT. Then, send all traffic to Mikrotik which
could act as default route to your FGT. If you have several segments,
and all routes are in the Mikrotik,...
Dear team, before purchasing, or getting a device from second hand,
please ensure that the legacy owner has active email in the support
portal, and can transfer his device to you. Meanwhile, be informed from
Local Sales Representatives, if you purcha...
Have a look also to this documentation, step #2. It should be possible
to perform without EMS server as @ozkanaltas said:
https://docs.fortinet.com/document/forticlient/7.2.4/administration-guide/445907/configuring-autoconnect-with-username-and-passw...
Could you make a packet capture with some debugs on FGT enabled, and
compare outputs. Which device does terminate connection? Maybe you could
see some errors from debugs: 1. packet capture between FGT and DC. 2.
debugs: diag de reset diag de app fnba...