Skip to main content
hillsitsupp
Explorer
February 18, 2025
Solved

LDAP set username-sensitivity enable

  • February 18, 2025
  • 1 reply
  • 1207 views

Am I right in thinking that setting set username-sensitivity enable for a local LDAP user just removes the set username-sensitivity disable line from the user's config?

 

set username-sensitivity enable doesn't persist in the config when I enter it, and I want to be sure I have this right.

 

I assume entering set username-sensitivity enable is the same as entering unset username-sensitivity ?

Best answer by hillsitsupp

Found the issue. It was remote LDAP groups in firewall groups causing case-insensitivity:

https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Issue-with-MFA-bypassed-with-an-LDAP-user/ta-p/330183

1 reply

hillsitsupp
hillsitsuppAuthorAnswer
Explorer
February 19, 2025

Found the issue. It was remote LDAP groups in firewall groups causing case-insensitivity:

https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Issue-with-MFA-bypassed-with-an-LDAP-user/ta-p/330183