FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
msingh_FTNT
Staff
Staff
Article Id 329930
Description This article describes how to make the LDAP server with a search limit of 1000 entries cannot query partial user data with an 'Invalid LDAP Server'.
Scope

FortiGate v7.0.

FortiGate v7.2.

FortiGate v7.4.

FortiGate v7.6.

Solution

The workaround is to specify the remote LDAP group from the CLI. It is not an issue because this is an expected behavior which do not support loading partial data if there is a limit on the server.

 

For the search using Group name/ID, the FortiGate must be able to search through the whole LDAP tree.

 

LDAP.JPG