Cybersecurity Forum

This forum is for all security enthusiasts to discuss Fortinet's latest & evolving technologies and to connect & network with peers in the cybersecurity hemisphere. Share and learn on a broad range of topics like best practices, use cases, integrations and more. For support specific questions/resources, please visit the Support Forum or the Knowledge Base.

morjo
New Contributor

FAC and multiple domain

hi, i know its possible to use different domains on the fac, but we use the same username for our admin accounts (i know its a bad idea) so how would the fac authenticate a user loggin into a server with the 2fa (fortinet agent), does the administrator need to have a token for each domain? or does the fac only use the name and not the domain.

Morten
1 REPLY 1
dred_FTNT
Staff
Staff

If you have same username in different domains or realms, FAC considers them distinct users.  Hence the admin would need a token for each domain.  If you want to treat the same username in multiple domains as one user (with one token) you can use FortiToken Cloud for the MFA service.   It has a feature to do just that.
David Redberg Fortinet Product Manager