Skip to main content
hhasny
Staff
Staff
September 29, 2025

Troubleshooting Tip: FSSO Collector Agent Not Receiving User Information from DC Agent

  • September 29, 2025
  • 0 replies
  • 770 views
Description This article describes an issue with the FSSO Collector Agent not being able to receive user information.
Scope FortiGate, FSSO Collector Agent in Advanced access mode, DC Agent.
Solution

The FSSO Collector Agent can be used with or without TLS enabled.

 

In this scenario, there is a mismatch of the TLS settings. Debug logs from the FSSO Collector Agent report the following:

 

ldaplib::ldap_connect failed to connect to:x.x.x.x:3268 with error code 0x51

 

TCP/3268 is non-TLS, while TCP/3269 is TLS.

 

On the FSSO Collector Agent for AD Settings, check or uncheck the 'Use secure connection(TLS)' box.

 

AD SettingsAD Settings

 

In order to open the AD setting window, the Admin needs to select 'Set Directory Access Information', choose Advanced in AD access mode, and select the Advanced Setting button.

 

fsso advanced settings.png

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!