Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
LeoT
New Contributor

Policy doesn't accept address + user as source

Hi,

is it possible to insert both adresses and users in a IPV4 policy?

I have a FG 100E 5.6.

If I use just the address everything works well, but if I also add a user, the policy is not applied.

 

 

2 REPLIES 2
ede_pfau
SuperUser
SuperUser

well, I think it does but the policy might not match anymore.

Adding a user (or user group) adds user authentication. For that to happen the user needs to use a protocol which permits interaction, namely HTTP, HTTPS, telnet or ftp. Otherwise he/she cannot enter credentials.

Tell us more about that policy - which service is allowed, did you try to authenticate interactively?

Ede Kernel panic: Aiee, killing interrupt handler!
Ede Kernel panic: Aiee, killing interrupt handler!
LeoT
New Contributor

I have solved adding the FSSO feature, installing the agent on the PDC and creating from scratch all the groups using the FSSO.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors