Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
aseques
New Contributor

Can a restricted user be used for the user authentication via ldap in windows?

Acording this link the account to verify if the credentials the users are using to log into the vpn should be "the LDAP administrator’s distinguished name".

I can confirm that this works with a regular administrator account, but can't it be restricted to a less powerful account type?

5 REPLIES 5
x_member
Contributor

Provided the user account has tree read access that should be sufficient - we're using a standard Domain User account to provide access to the Fortigate for user authentication.

aseques

Ok, thanks a lot, I'll try to test it next week, friday it's a bad day to change config firewalls.

gschmitt
Valued Contributor

aseques wrote:

friday it's a bad day to change config firewalls.

Read-Only Friday

x_member

gschmitt wrote:

aseques wrote:

friday it's a bad day to change config firewalls.

Read-Only Friday

I don't even enter the server room after Friday lunchtime 

aseques

For anyone interested, I can confirm that it indeed works for non-admin users.

Labels
Top Kudoed Authors