In Fortinet release 5.2.3 FSSO policies are not being applied to MAC OS X machines. Agent is in DC Agent mode, is it a supported feature ?
FSSO works based on the logon events. Usually MAC PC do not generate a Windows logon event in the AD server. So FSSO for MAC may not work properly. If you are able to view the event logs in the AD server, you can try with polling mode and select "windows security event logs"
If the event logs are not seen, as a workaround you can try using NTLM option. This is a browser based authentication that will require users to logon a second time via the browser. The non-windows machines will get prompt to enter the AD login details. Below is the command for enabling NTLM: config firewall policy edit <policy_id> set ntlm enable end
User | Count |
---|---|
1921 | |
1144 | |
769 | |
447 | |
277 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.