Skip to main content
aseques
Visitor III
August 28, 2015
Question

Can a restricted user be used for the user authentication via ldap in windows?

  • August 28, 2015
  • 5 replies
  • 4567 views

Acording this link the account to verify if the credentials the users are using to log into the vpn should be "the LDAP administrator’s distinguished name".

I can confirm that this works with a regular administrator account, but can't it be restricted to a less powerful account type?

    5 replies

    x_member
    New Member
    August 28, 2015

    Provided the user account has tree read access that should be sufficient - we're using a standard Domain User account to provide access to the Fortigate for user authentication.

    aseques
    asequesAuthor
    Visitor III
    August 28, 2015

    Ok, thanks a lot, I'll try to test it next week, friday it's a bad day to change config firewalls.

    gschmitt
    New Member
    August 28, 2015

    aseques wrote:

    friday it's a bad day to change config firewalls.

    Read-Only Friday

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.