I am trying to configure my fortianalyzer and fortimanager to authenticate users through LDAPS the same way my 500D firewalls do. On the 500D I connect to my DC servers via hostname and their certificate (single hostname with Subject Alternative Names for each DCs FQDN) handles the SSL encryption. To do this I turn on the secure checkbox of the 500D's ldap config and select "no certificate". The problem being that the fortianalyzer and fortimanager do not seem to have a no certificate option, they force me to use the fortinet built in cert or turn off the secure feature, neither of which work for me. Am I missing something? Am I required to use a client side cert?
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1714 | |
1093 | |
752 | |
447 | |
232 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.