Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
doncacciatoconsuting
Contributor

FSSO - Loss of connectivity between FCTMobility Agent and FAC ?

Goal is to create identity based FW policy.  We are looking at using FCT Mobility Agent and FAC Cloud. Trying to wrap my head around the impact in the event of a loss of connectivity anywhere in this path. SSOMA <--> FAC Cloud <--> Fortigate. 

 

How long by default does the Fortigate cache the user/ip correlation ? Any ideas ? 

Don

1 REPLY 1
jhussain_FTNT

Hi

By default, the FortiGate caches the user/IP correlation with FSSO for 8 hours. This is managed by the dead entry timer in collector agent and similarly the login expiry time under Fortinet SSO Methods > Fortigate settings

 

https://docs.fortinet.com/document/fortiauthenticator/6.5.2/administration-guide/712256/general-sett...

 

Regards

Jamal Hussain

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors