Created on
09-28-2023
09:58 PM
Edited on
09-29-2023
07:36 AM
By
Jean-Philippe_P
| Description | This article provides a detailed solution for addressing the inability to access Active Directory on a FortiGate Firewall when using Azure ISDB as the destination. The core of the problem stems from outdated ISDB services, which are essential for proper policy routing towards Azure. |
| Scope | FortiGate, Azure ISDB, Active Directory. |
| Solution |
The policy to access the Active Directory is not working. Specifically, traffic is not going through the policy, and it is not working when the destination is changed to Azure ISDB. The root cause is the ISDB services are not updated because the FortiGuard schedule update option was disabled.
Initiate debugging and application updates:
diagnose debug application update -1
diagnose debug enable
Execute the update:
exec update-now
Post the update, the firewall policy ID (policy #) should start working correctly with Azure ISDB.
Note: Before making any modifications, always back up the configuration. It is imperative to be clear on which policy or service to update and follow the procedures carefully. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.