| Description |
When attempting to log in using local users configured on FortiAuthenticator, authentication may fail with the following error in debug logs:
Credential::GetSerialization: Local user is not allowed to log into PC
|
| Scope | FortiAuthenticator. |
| Solution |
To resolve this issue: Ensure that the username created in FortiAuthenticator exactly matches the local user account on the Windows PC. The usernames must be identical (case-sensitive and without domain prefix if applicable).
To list local user accounts on the Windows machine, run the following command in Command Prompt:
dir /b C:\Users
If the Windows PC has a local user `XYZ`, then FortiAuthenticator must also have a user account with the same username `XYZ`. Failing to match these usernames will result in failed logins and the error mentioned above. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.