Skip to main content
GiangNH
New Member
September 7, 2023
Solved

Error on Forti Authentication

  • September 7, 2023
  • 2 replies
  • 3305 views

We have many logs on FortiAuthenticator as below:

Still keep remote LDAP user xxx though it has ceased existing remotely

And

Cannot assign an FTM token to…..? Or   Failed to sync remote LDAP user

Please let me know what does this means of these logs

Thanks

Best answer by dbu

Are these two alerts coming for same not existing user or happens with every user you are trying to assign token ?
Do you have available tokens to assign ?
Does this user has a defined email on the remote LDAP ?

 

Please provide full logs shown, it must be more explanatory about the issue. 

 Please provide also what @ndumaj  requested, it is wise to check from firmware perspective. 

2 replies

ndumaj
Staff
Staff
September 7, 2023

Hello @GiangNH

What is your FAC software version?
Please can you provide us a screenshot or full message log?
Did the issue appeared after any upgrade?
BR

GiangNH
GiangNHAuthor
New Member
September 8, 2023

My software version is v6.2.1. We don't upgrade anything

Capture.PNGCapture2.PNG

dbu
Staff
Staff
September 7, 2023

Hello @GiangNH ,

 

In addition to @ndumaj 


From explanation "Still keep remote LDAP user xxx though it has ceased existing remotely" it looks like this user is not existing anymore on the remote server but still exists in FAC

Looks like related to this option here: 

 

enab.PNG

 

Is this option enabled of disabled? 

 

Regards!

GiangNH
GiangNHAuthor
New Member
September 8, 2023

We enable feature Do not delete synced users when they are no longer found on the remote server. So what's aboout alert, Cannot assign an FTM token to…..? Or   Failed to sync remote LDAP user, Do you have any idea

dbu
Staff
dbuAnswer
Staff
September 8, 2023

Are these two alerts coming for same not existing user or happens with every user you are trying to assign token ?
Do you have available tokens to assign ?
Does this user has a defined email on the remote LDAP ?

 

Please provide full logs shown, it must be more explanatory about the issue. 

 Please provide also what @ndumaj  requested, it is wise to check from firmware perspective.