Hi Everyone ,
I am facing a strange issue with sync rules. I have created sync rule to import the remote LDAP users. Sync is not happening correctly because it does not reflect the correct users of the remote LDAP group.
Solved! Go to Solution.
This error is received because are no users on the this remote LDAP group and as result the sync rule is failing to run.
This explains why user is not getting deleted.
Enable the option : Proceed with rule even when response empty .
Check and let me know if it helped.
Hi @akhan2 ,
Check if this option is enabled on the remote user sync rules : "Do not delete synced users when they are no longer found on the remote server" .
If enabled , disabled it and test again .
Hi @dbu , This option is disabled, which means user should be removed correct?
Yes if the option is disabled the user should be removed from the group in FortiAuthenticator.
Can you try a manual sync of the rule and check the logs if you see something related.
I did a manual sync of the rule and can see something like :
It looks like there are no more users on this remote group. Can you verify ?
Correct this is a test group with only one user.
After I remove this user the group is empty, which means that sync rule should remove it also ?
This error is received because are no users on the this remote LDAP group and as result the sync rule is failing to run.
This explains why user is not getting deleted.
Enable the option : Proceed with rule even when response empty .
Check and let me know if it helped.
Now it is clear. After enabling this option and run a manual sync of the rule user was removed from the group.
Thank you for help and explanation.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1751 | |
1114 | |
766 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.