Skip to main content
John_Williamson
New Member
January 29, 2019
Solved

Can Fortigate discover Active directory user names ?

  • January 29, 2019
  • 8 replies
  • 20073 views

We would like to be able to better identify users with our Fortigate, when we view FortiView, rather than just getting IP addresses to hunt down. Sometimes, the device name is shown, but not always and often I have to hit "Sources" under FortiView a second time for that to happen.  If Fortigate can't do that , on it's own, is there another product or plug-in that would facilitate this ? 

 

    Best answer by John_Williamson

    I know this is an old thread, but things got busy at work.

     

    Just to be clear, I do NOT want to have users login IN to the Fortigate. I want to be able to link to Active Directory and pull the data for identification. Besides wanting to see a user name of the person sending data through the firewall, we need to be able to link Active Directory groups to the Fortigate web filter profiles. That is how we have been using iBoss and want to replace that device with our Fortigate. As an example, we create a group in AD and assign users to it. That group is also listed in the iBoss as a group we can define web access policies to.

     

     

    8 replies

    re_zagorodnev
    New Member
    January 30, 2019

    Hi. FortiOS version? Last 6.0.4 have bug in fortiview.

    John_Williamson
    New Member
    January 30, 2019

    Currently on 6.02, but will hit the "Update" button soon. 

     

    Most docs I've found talk about authenticating with the Fortigate, but that is not my goal. I just want a way to link the logged in user to the IP so I know who to call when I see stuff I need to ask about. 

     

     

    emnoc
    New Member
    January 30, 2019

    Do you have identification set on the interface? I haven't played around lately in this and we have the same issues with Forcepoint  NGFW where end-users only need USER-ID and not authentication. They a  FUID solution that a bitch and bear to get up and running but works fair to good in most cases.

     

     

    mani_samuel
    New Member
    April 15, 2019

    Dears, 

    I have a firewall fortigate 100 in the HQ with internal ip 172.16.17.254. I have a firewall in the field office with ip 172.16.30.254. I can ping from the field office to HQ but can ping from HQ to filed office. What might be cause

     

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.