Question
Configuring least privileges for LDAP admin account authentication in Active Directory
HI
May i know why FortiGate integrated to LDAP Active Directory AD that account require below permission? could we just select Read only?
In Permissions list, select the following:
- Change password
- Reset password
In Property-specific.select the following:
- Write lockoutTime
- Read lockoutTime
- Write pwdLastSet
- Read pwdLastSet
- Write UserAccountControl
thanks
