We work with FAZ v5.6.2-build1631 180124 (GA) on VM and with Fprtgate -FGT600D -v5.6.1 build1484 (GA).
When I look at the top web site and tip user 0 always empty,
top application have data.
Why.
What we should do ,so I will be able to see our AD users web log...
Thanks,
Liora
Check the traffic logs to see whether the user field is being populated. If not, I would suggest you check the FortiGate configuration to see whether it is properly setup to record user information. Are you using FSSO on the FortiGate?
Hi,
On the traffic logs the user field is not populated.
Can you be more specific , which setting I should check that consider to record user information?
About the FSSO I will check, Is it connect to the setting we should check?
Thanks,
Liora
For FortiGate to populate the user field in logs, it needs to authenticate the users associated with that traffic.
FSSO is the approach which is transparent to end users because it integrates with Active Directory:
FSSO - Fortinet Single Sign-On http://help.fortinet.com/fos50hlp/56/Content/FortiOS/fortigate-ports-and-protocols/010-FSSO.htm
Otherwise, you need to enable firewall authentication on all relevant firewall policies:
Configuring authenticated access http://help.fortinet.com/...cation/Auth_Access.htm
User | Count |
---|---|
2047 | |
1170 | |
770 | |
448 | |
339 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.