FortiMail
FortiMail provides advanced, multi-layer protection against the full spectrum of email-borne threats
cysaw
Staff & Editor
Staff & Editor
Article Id 319120
Description This article describes how to troubleshoot if the LDAP user query has failed.
Scope

FortiMail.

Solution
  1. The Fortimail LDAP user query has failed for some specific users.


cysaw_0-1717572168516.png

 

  1. Do a packet capture in the FortiMail, and do the LDAP query again. If the LDAP server does not respond correctly with the user CN,  proceed to the next step.
  2. Check whether the name of the user CN is more than 20 characters or not.
  3. In this case, the user CN has 21 characters which caused the issue to happen.
  4. Try to make the user CN to be shorter than 20 characters and verify the result.
  5. Check the AD user, and make sure the email field in the AD user object is already filled with the email account (attached screenshot as an example) then run the LADP query test again and it should work
 

Email.png