Skip to main content
Tanguy
New Member
September 28, 2020
Question

LDAPs and SSL Problem

  • September 28, 2020
  • 7 replies
  • 6891 views

Hi,

 

I tried to configure my LDAP authentification using a CA certificate.

Test Connectivity is successful also Test User credentials.

Before my VPN worked fine. I deleted my user (first from group) then I recreated it. No problem I can browse LDAP.

I didn't change anything to my client. I waited a few minute sbefore trying. But everytime it fails at 80% and looking at logs : Events,  VPn it says :

Reason

sslvpn_login_unknown_user

Tried on another Fortinet, same result. What am I doing wrong ?

 

Not e: I followed

https://docs.fortinet.com/document/fortigate/6.2.2/cookbook/688719/ssl-vpn-with-ldap-user-password-renew

https://www.infosecmonkey.com/2019/04/20/secure-ldap-and-ad-password-change-via-forticlient/

 

Thanks !

    7 replies

    boneyard
    Valued Contributor
    October 4, 2020

    what do you mean with deleted your user? 

     

    is the user or usergroup still allowed on the sslvpn firewall policy?

    Tanguy
    TanguyAuthor
    New Member
    October 4, 2020

    It means. I unregistred it and register it back by browsing ladp

    boneyard
    Valued Contributor
    October 10, 2020

    ok, not sure if that has any effect

     

    and .. is the user or usergroup still allowed on the sslvpn firewall policy?

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!