Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Conan_Moore
New Contributor

Does FG support LDAP referal?

Hi

 

Having an issue with IPSEC users.  They can complete LDAP authentication against local DC and because they are using Forticlient,  they receive notification when their password has expired.  However,  our Security posture states that all perimeter authentication must be done against a read-only DC so when the user sees that their passwd has expired,  they attempt to reset it and it fails.

 

Our Netscalars are clever enough to realise they are talking to RODC and accept the referral to talk to RWDC when they need to. Is there anyway that the Fortigate can recognise and follow an LDAP referral which they receive from the RO DC? 

 

Thanks

Conan

0 REPLIES 0
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors