Hi Experts,
I have recently deployed Fortigate Firewall 60e on my premises although all rules and web filter seems to be working fine we are having an issue with the user who authenticates with Microsoft Active Directory Domain controller below is our environment.
We have a single forest and single domain with multiple dites based domain controller and user authenticate through domain controller to access resources.
Our laptop user are facing an issue that they do not shutdown/sign out system daily they just hibernate systems and in next morning open lid of the laptop and provide a password and start working but their internet is not working and they call IT to support so every time we have to ask them to sign out system sign again to authenticate for internetworking.
We did some google and make changes in "Fortinet Single Sign-on Agent Configuration" but still facing this issue.
Below are our current settings.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
you can tinker with some timeouts, but there always will be limits on this. which makes sense because you can't assume that combination user / IP is the same forever. if you have a way to make sure it is then you don't need FSSO firewall rules.
but wouldnt it be easier to just announce through the office that hibernate won't work anymore and you need to shutdown / startup to get internet access.
So what is the technical solution?
https://kb.fortinet.com/kb/documentLink.do?externalID=FD31876
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1714 | |
1093 | |
752 | |
447 | |
232 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.