Skip to main content
Upendra
New Member
February 6, 2015
Question

FortiGate-30D having 20 local users creation limit

  • February 6, 2015
  • 3 replies
  • 11372 views

Dear All,

Can anybody help me, How to create more than 20 local users in FG-30D. I can not create more than 20 and any FortiOS.

I tried in v5.0.9, v5.0.10, v5.2.1 and v5.2.2

Find attached error massages screen shot.

Regards

Upendra Makwana.

 

    3 replies

    neonbit
    New Member
    February 6, 2015

    That's because the 30D is limited to 20 local users.

     

    If you need more you can upgrade to the 60D which has a maximum of 500 local users.

     

    The max values page has all the details: http://help.fortinet.com/.../5-2-2/max-values.html

    Upendra
    UpendraAuthor
    New Member
    February 6, 2015

    Thanks for update.

    In Maximum Value Guide.

       - Local Users - 20

       - Local Users Groups - 100

    In FG30D Tech Datasheet

       - Client-to-Gateway IPSec VPN Tunnels - 250

       - Concurrent SSL-VPN Users (Recommeded Max)  - 80

       - Max Number of FortiTokens - 100

     

    What use of above values if there is Local users limit is 20 max.

    Regards

    Upendra Makwana.

     

    iJake
    New Member
    February 6, 2015

    Upendra wrote:

    Thanks for update.

    In Maximum Value Guide.

       - Local Users - 20

       - Local Users Groups - 100

    In FG30D Tech Datasheet

       - Client-to-Gateway IPSec VPN Tunnels - 250

       - Concurrent SSL-VPN Users (Recommeded Max)  - 80

       - Max Number of FortiTokens - 100

     

    What use of above values if there is Local users limit is 20 max.

    Regards

    Upendra Makwana.

     

     

    20 Local Users is the maximum of locally authenticated users you can have. The reason you can have 100 groups is because you can place non-local (e.g. LDAP) users within this group, or indeed AD groups if using FSSO.

     

    As suggested, look in to external authentication methods such as LDAP.

     

    Regards

    lkorbasiewicz_FTNT
    Staff
    Staff
    February 6, 2015

    Hello,

    You can use remote authentication server (for example LDAP) to authenticate your users.