FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
hhasny
Staff
Staff
Article Id 412976
Description This article describes an issue with the FSSO Collector Agent not being able to receive user information.
Scope FortiGate, FSSO Collector Agent in Advanced access mode, DC Agent.
Solution

The FSSO Collector Agent can be used with or without TLS enabled.

 

In this scenario, there is a mismatch of the TLS settings. Debug logs from the FSSO Collector Agent report the following:

 

ldaplib::ldap_connect failed to connect to:x.x.x.x:3268 with error code 0x51

 

TCP/3268 is non-TLS, while TCP/3269 is TLS.

 

On the FSSO Collector Agent for AD Settings, check or uncheck the 'Use secure connection(TLS)' box.

 

AD SettingsAD Settings