Skip to main content
halvor
New Member
November 6, 2018
Question

LDAP and security groups filter

  • November 6, 2018
  • 1 reply
  • 2803 views

In customer AD, the 2 security groups I wanted to retrieve users from and sync to a group on FAC. This group will then be used for FortiToken mobile matching to AD username.   It works well when using "Import Remote LDAP Users by Group Memberships" If I set up the same LDAP string in "Remote User Sync Ruls" then it's empty. Logging says: "No remote users found for sync rule" VTDS_users "on remote LDAP server

 

Have checked a lot on FortiNet but finds no good suggestions. Those mentioned have I tested without success.

 

    1 reply

    marco_buccella
    New Member
    November 12, 2018

    Hi halvor,

     

    Did you use the following type of string to find the users?

     

    (&(objectCategory=user)(memberOf=CN=Redes,OU=Madrid,DC=hellboy,DC=com))

     

    Thanks and regards

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!