Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
dieter
New Contributor

CA upload interval to Fortigate

We often have users that are in the FSSO Agent list, but ar not known on the fortigate. Sometimes it takes several minutes.

So user comes to work, logs in. Logon event is picked up by FSSO agent. But user has no access to mail (in cloud) or internet. Explain that to the user...

 

At what interval are logged on users uploaded from FSSO CA to Fortigate ? Can the interval be lowered ?

10 REPLIES 10
dieter

xsilver wrote:

simple stupid question: Do those servers have time synchronized (via reliable NTP for e.g.) ?

Don't DC's sync time between each other ? I know domain workstations by default get their time from a DC (unless specified otherwise).

 

But time diff is insignificant anyway:

w32tm /monitor
SWINAD01.xx *** PDC ***[[fe80::806b:5062:ee61:4111%12]:123]:
    ICMP: 0ms delay
    NTP: +0.0000000s offset from SWINAD01.xx
        RefID: ssh2.ulyssis.student.kuleuven.be [193.190.253.212]
        Stratum: 3
SWINAD02.xx[10.252.0.51:123]:
    ICMP: 0ms delay
    NTP: +0.0038739s offset from SWINAD01.xx
        RefID: SWINAD01.xx [10.252.0.50]
        Stratum: 4
swinadfs01.xx[10.252.0.55:123]:
    ICMP: 0ms delay
    NTP: +0.0099423s offset from SWINAD01.xx
        RefID: SWINAD01.xx [10.252.0.50]
        Stratum: 4



But always good to check anyway :)

Labels
Top Kudoed Authors