Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Not applicable

Maximum number of group members

Hello everybody. What is the maximum number of group members in a FortiMail " User Group" ? Besides that, I have another question just to know: Since a group and all its members can be added in the command line by a single line: is it that the maximum is due to the maximum string length? Regards, Marcos
5 REPLIES 5
RickP
New Contributor

What is the maximum number of group members in a FortiMail " User Group" ?
It depends on the model of FortiMail unit you have, and possibly the firmware you have installed. If you' re running a pre-MR3 version of 3.0, check the max values table at http://kc.forticare.com/default.asp?id=2396 If you' re running MR3, you can execute the ' get limits' command.
Not applicable

Oh no! According to " http://kc.forticare.com/default.asp?id=2396" , the FM100 can only have up to 20 (twenty) users in a group, and the FM4000 can only have up to 100 users per group! This is not possible... I need to implement a solution based on groups for more than 1200 users. Please people at FortiNet, consider releasing a patch/release that do not restrict the maximum number of users in a group (well, at least with a really high maximum, perhaps limited by the maximum string length). Regards, Marcos
RickP
New Contributor

I need to implement a solution based on groups for more than 1200 users.
Does the customer have a database with these users? LDAP groups are supported, though I don' t know much about it. Say wait a sec, does the group you want to create include all of the users on the domain? I ask because you don' t need a group to do that at all.
Not applicable

FM-100 only uses LDAP to authenticate users in the webmail interface and to decide whether or not AV and AS has to be applied to a particular user. It does not implement what I need, and that' s why I' m doing it with scripts. Differente groups will have different users. There will not be one group with all of them. Regards, Marcos
RickP
New Contributor

FM-100 only uses LDAP to authenticate users in the webmail interface and to decide whether or not AV and AS has to be applied to a particular user.
The latest version of the firmware does these things, but further abilities have been added as well. You can indeed apply a recipient-based policy to an LDAP group.
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors