Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Zerotrust
New Contributor

External Connector FSSO Agent on Windows AD

Hello everyone, 

 

I have two different FortiGates I recently installed on my work network. 

Fortigate 200E 

Fortigate 81E

They are both on FortiOS 6.4.8

 

I am having an issue with one of them (the 81E) not fully populating the users/group. Are there limitations on the selected groups the Fortigate 81E can choose simultaneously? And if there is, what is the best way to specify a group. See the screenshots attached. 

 

They are both connected to the same FSSO agent on a windows device. 

 

Thanks in advance for your help. 

 

FGT-200E FSSO.PNGFGT-81E FSSO.PNG

 

1 Solution
bpozdena_FTNT

1024 is the maximum number of FSSO user groups supported by Fortigate 81E.

 

bpozdena_FTNT_0-1654068276678.png

 

Source: https://docs.fortinet.com/max-value-table 

 

You will need to apply group filter and only synchronize the groups you actually need for your firewall policy configuration. 

HTH,
Boris

View solution in original post

10 REPLIES 10
Zerotrust
New Contributor

Thanks, everyone, for your replies. I have already adjusted the interval times to a longer query. The 1 minute was just a test. 

 

I will apply a filter and include only the groups I need. 

Labels
Top Kudoed Authors