- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
On and off SSLVPN configuration is wrong (-7200) at 48%
We get this message
"Message Remote LDAP user authentication(chap) with FortiToken failed: invalid password"
We also get intermittent
"Cannot add user from LDAP server because of this error: Failed to import user "" (rule: AD Sync), The username attribute cannot be retrieved"
- Labels:
-
FortiAuthenticator v5.5
-
FortiClient
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@atravel, could you tell us if your FAC is added to the Active directory as machine entity? And, if the option 'Use Windows AD Domain Auth' is enabled in the appropriate radius policy?
Below you can find article about these, and doc link.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Use Windows AD Domain Auth is not enabled.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
What device is acting as radius Client? Could you adjust on Radius Client auth. method to PAP, and test it? If it works, you can keep working with PAP method, otherwise you should configure options above.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Our FortiGate is radius Client.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Is this ok?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Could you share the screen from Radius server configuration on Fortigate?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Change please 'Authentication method' to Specify > PAP, and try to reproduce the issue.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I made the change and Im monitoring the logs to see if the error will reappear.
