FortiAuthenticator
FortiAuthenticator provides centralized authentication services for the Fortinet Security Fabric including multi-factor authentication, single sign-on services, certificate management, and guest management.
Somashekara_Hanumant
Staff & Editor
Staff & Editor
Article Id 400515
Description This article describes how to import users using remote-sync rules when already imported users are there.
Scope FortiAuthenticator.
Solution

Using remote sync rules, users can import users from either an OU or/Security group. Importing a remote user and assigning a FortiMobile token.

 

import_user.JPG

 

Assigning a FortiMobile token to the 'sales1' user.


token.JPG

 

Creating a remote-sync rule:

 

sync-rule.JPG

 

Once the remote user sync rule is created then select the same and select Manual Sync. After this, the users will get synced with Remote Users.

 

import_uses2.JPG

 

For the above user 'nse8-user1', FortiAuthenticator has allotted the FortiMobile and email ID automatically.

 

While doing sync with multiple users, FortiAuthenticator should have enough free FortiMobile tokens in case the administrator has selected the '' option while creating a Sync rule under Synchronization Attributes -> OTP method assignment priority.

 

If FortiAuthenticator does not have enough FortiMobile tokens, then the Sync rule does not import any users. In this case admin can select the option 'None (users are synced explicitly with no token-based authentication)'.