Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Tushara_Manoj
New Contributor

How to enable password change option in captive portal, FortiManager AD integration?

hi,

I have integrate fortimanager/fortigate with Windows AD. From Windows AD, I have enabled "user must change password first time. Its is asking the new passwords in captive portal. but it is not changing in active directory and can not authenticate by captive portal.

 

have you any idea please? and i have use admin level user for AD integration.

 

Thanks....

thushara Manoj

 

3 REPLIES 3
xsilver_FTNT
Staff
Staff

Hi,

make sure you have LDAPS (SSL protected LDAP) and in 'config user ldap' enabled options password-expiry-warning and password-renewal.

 

Tomas Stribrny - NASDAQ:FTNT - Fortinet Inc. - TAC Staff Engineer
AAA, MFA, VoIP and other Fortinet stuff

Tushara_Manoj

hi,

 

thanks for reply...

i have enabled the enabled options password-expiry-warning and password-renewal.

but not integrate the AD with LDAPS. Ill try.

thanks ....

Thushara Manoj

xsilver_FTNT

for password renewal LDAPS is a must. You really do not want passwords being sent in plain-text over the network. And AD require it anyway I think.

Tomas Stribrny - NASDAQ:FTNT - Fortinet Inc. - TAC Staff Engineer
AAA, MFA, VoIP and other Fortinet stuff

Labels
Top Kudoed Authors