hi,
I have integrate fortimanager/fortigate with Windows AD. From Windows AD, I have enabled "user must change password first time. Its is asking the new passwords in captive portal. but it is not changing in active directory and can not authenticate by captive portal.
have you any idea please? and i have use admin level user for AD integration.
Thanks....
thushara Manoj
Hi,
make sure you have LDAPS (SSL protected LDAP) and in 'config user ldap' enabled options password-expiry-warning and password-renewal.
Tomas Stribrny - NASDAQ:FTNT - Fortinet Inc. - TAC Staff Engineer
AAA, MFA, VoIP and other Fortinet stuff
hi,
thanks for reply...
i have enabled the enabled options password-expiry-warning and password-renewal.
but not integrate the AD with LDAPS. Ill try.
thanks ....
Thushara Manoj
for password renewal LDAPS is a must. You really do not want passwords being sent in plain-text over the network. And AD require it anyway I think.
Tomas Stribrny - NASDAQ:FTNT - Fortinet Inc. - TAC Staff Engineer
AAA, MFA, VoIP and other Fortinet stuff
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1737 | |
1107 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.