Skip to main content
sisrayilov
Staff
August 7, 2025

Troubleshooting Tip: Unable to import a remote user as a local user through a Remote User Sync Rule in the FortiAuthenticator

  • August 7, 2025
  • 0 replies
  • 344 views
Description

 

This article describes a problem that occurs while importing a remote user (LDAP) as a local user in FortiAuthenticator.

 

Scope

 

FortiAuthenticator.

 

Solution

 

The following error log might be received during the process of importing a remote LDAP user in the FortiAuthenticator through a remote user sync rule. It can be checked and verified through the following path: Logging -> Log Access -> Logs.

log.png

 

From the RAW logs:

 

date=2025-08-07 time=10:42:44+0000 oid=9092407 logid=30303 cat="Event" subcat="System" level="information" nas="" action="" status="" msg="Cannot add user from LDAP server XY because of this error: Failed to import user "importasalocaluser" (rule: import as a local user), Email is required if TFA method is FTM" user=""

 

In order to fix it, there is a need to add the email of the user account to the LDAP server.

 AD account.png

 

After adding an email to the account in Active Directory and resynchronizing the remote user through the same remote user sync rule, it will be added successfully. 


adding .png

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!