Question
Endpoint showing incorrect group (Non-AD Endpoints) despite correct profile assignment
I’m seeing an issue in my FortiSASE v26.1.92 where an endpoint is assigned the correct profile (IT Infra), but the group is showing as “Non-AD Endpoints”, which is not expected.
The device is domain-joined and should be part of the appropriate AD-synced group, but it’s not reflecting correctly in the console.
Details:
- Endpoint status: Online & managed
- Correct profile applied: IT Infra
- Group shown: Non-AD Endpoints (incorrect)
- AD sync is already configured
Question:
- What could cause an endpoint to fall under “Non-AD Endpoints” even when it’s domain-joined?
Any guidance would be appreciated.



