With more and more users requesting L2TP/IPsec VPNs, I find it impractical to keep track of which users are still active in our organization. I would like to let LDAP handle the VPN authentication for these users. Is that possible? I am able to connect to the LDAP server and authenticate as a firewall user, but I can't seem to figure out how get VPN connections to accept those ldap users.
Any guidance or experience is appreciated.
Thanks, Bill.
Hi Bill In short, yes this is possible I think this could be a good starting point. https://docs.fortinet.com/document/fortigate/6.0.0/cookbook/589121/ipsec-vpn-with-forticlient and for AD auth https://docs.fortinet.com/document/fortigate/6.4.0/administration-guide/173316/add-ldap-user-authent...
Best
Markus
________________________________________________________
--- NSE 4 ---
________________________________________________________
User | Count |
---|---|
1923 | |
1144 | |
769 | |
447 | |
279 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.