Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
dlya
New Contributor

SSO Authentication TimeOut

Hi, i use a Fortigate-VM: Operation Mode NAT Firmware Version v5.0,build0228 (GA Patch 4) I use SSO with Active Directory, users access to Internet with transapent authentication to AD using SSO. It works fine. The issue we have is when users leaves the office and not shut down windows, next day can not access to Internet until they reboot windows, after it works fine. I know that there is a time-out that need to reauthenticate, but i want to know if there is a solution for it !!!
3 REPLIES 3
comdini
New Contributor

in here I' m also facing with this issue. I' ve noted with specially Laptops. during Hibernate , Standby or switch from one Network adapter to other ( Wi-FI to LAN or LAN to Wi-Fi ). I' m using Polling Mode ( Windows NETAPI ) in FSSO. tested other mode also. problem same. MY OS is V4.0 MR 3 Patch 14. please advise us.
billp
Contributor

dyla, I' m new to using AD on the Fortigates, but I think this is functioning " as designed." If the computer goes to sleep, the FSSO agent can' t verify that the user is still logged in and will de-authenticate it. If you logout and login, it should fix the problem. I don' t think you need a full reboot. There is a " dead entry timeout" setting in the FSSO agent on the AD server that determines how long before a non-responding computer will be de-authenticated. The default is 480 minutes (8 hours). You could changing it to 720 minutes (12 hours) to see if that helps.

Bill ========== Fortigate 600C 5.0.12, 111C 5.0.2 Logstash 1.4.1

Bill ========== Fortigate 600C 5.0.12, 111C 5.0.2 Logstash 1.4.1
dlya
New Contributor

Hi, if i do a log off and log in not work too, i have to reboot windows and then works fine again.
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors