FortiWeb
A FortiWeb can be configured to join a Security Fabric through the root or downstream FortiGate.
AACastillo
Staff
Staff
Article Id 352506
Description This article describes a known issue when a FortiWeb administrator cannot create FortiWeb's administrator users taking remote LDAP users that have a point character '.' in the user name.
Scope FortiWeb 7.4.1 to 7.4.5.
Solution

Administrators need to create a FortiWeb administrator using remote users created in a remote LDAP server, also those LDAP user has a point (.) for the name. The LDAP user credentials can be tested in User --> Remote Server and open the configured LDAP server, then select the 'Test LDAP' button and write the LDAP user (user with a point in its name) and password:


001a.png

 

Test with the user with point is successful.


002.png

 

Although the LDAP user is working correctly, when the FortiWeb administrator accesses System --> Admin --> Administrators, then selects Create New --> Administrator when trying to configure 'Administrator' with the LDAP user name with point and 'Type' uses the LDAP server, the administrator cannot create the LDAP user as an administrator user showing the error 'Legal characters include a-z, A-Z, 0-9, _, -. It cannot start with a hyphen and may end with $.':

 

003a.png

 

This situation is related to bug 1085043, where some special characters like point (.) cannot be used to create LDAP admin users. This situation affects FortiWeb versions from 7.4.1 to 7.4.5; no previous versions like 7.0.X or 7.2.X are affected.

 

Workaround: Configure a local user or an LDAP user with only letters and numbers in its name (without points or other special characters).