| Description | This article discusses the exact match user accounts that were created in Microsoft Active Directory when logging into the SSL VPN with MFA enabled. Microsoft Active Directory does not support usernames with case sensitivity, meaning 'BIGCAP' and 'bigcap' will be treated as the same account. Enable Username case sensitivity in FortiGate to force an exact match username. |
| Scope | FortiGate v7.0.x and v7.2.x |
| Solution |
config user local
edit "LIMyd"
config user group
Sample SSL VPN debug log:
5. To turn on the debug log on SSL VPN:
Related document: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.