Hi,
I am not familiar with Fortimanager, so maybe you' d be better off opening a ticket with Fortinet for that part, but I believe the group contents are sent from the Agent to the Fortigate directly, so the Fortimanager would normally not get any information from the Agent.
And you should be able to configure everything without the Fortimanager, at least on one machine, even if just to prove it does work.
Still you mention that " From the GUI of the 300C, everything is OK " , however you also mention that " On our FG300C with FortiOS 5.0.6, we are not able to see the Groups defined " ...
I probably do not understand correctly what the problem is.
In Log & Report -> Event Log -> User, you see the users that are part of groups that you configured the FSSO Agent to send to the Fortigate, so we can assume that the Agent sees the AD Groups and their users, and sends this information correctly.
The way I see this, from the output of " diagnose debug authd fsso list " , it seems to be missing the last part that we get on our machine, " MemberOf: <FortigateGroupName>" , as if the groups on the Fortigate do not contain the groups from your DC/FSSO Agent
When you create a group on the Fortigate, you do specify the type FSSO ?
Do you have a LDAP server specified under Users & Devices -> Authentication -> LDAP Servers, with a bind type Regular, port 389, and Common Name Identifier of sAMAccountName, etc ?
Let me know if this is too garbled or anything else I can do :)
Richard