Created on 03-07-2024 10:05 PM Edited on 09-25-2024 07:21 AM By Jean-Philippe_P
Description |
This article describes when a user manually imports the remote user in the LDAP group, it will still exist after that user is removed from AD and Manual Sync on Remote User Synced Rules. |
Scope | FortiAuthenticator. |
Solution |
In conclusion, Remote User Sync Rules -> Manual Sync will not sync the user manually imported by Remote Users -> Import.
It is not possible to discern manually imported users from automatically imported users. Only the logs can tell. To find out, search for the user name in the logs and see how that user was imported.
For example: Manually imported user:
date=2024-05-13 time=07:25:45+0000 oid=841 logid=10203 cat="Event" subcat="Admin Configuration" level="information" nas="" action="" status="" msg="Imported remote user "user01" from remote LDAP server "DC01 (192.168.95.16)"" user="admin"
Using remote user sync rules:
date=2024-05-13 time=07:35:11+0000 oid=1526 logid=10001 cat="Event" subcat="Admin Configuration" level="information" nas="" action="Add" status="" msg="Added Remote LDAP User: user02" user="" |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.