I've made a change in our LDAP configuration by moving all users with current tokens to a new group CN=FW_VPN_Client_Users. I plan to manage VPN access by adding users to this group as needed.
Before I proceed further, I have a question regarding the 'Set Group Filter' option in our Fortinet setup:
If I adjust the group filter settings now, will it impact users who are currently logged into the VPN with valid tokens? In other words, will changing the filter settings disconnect or otherwise affect these active users?
I'm looking to understand whether these changes will apply only to new authentication requests or also to users who are already authenticated and actively using the VPN.
Any insights or experiences you can share would be greatly appreciated!
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Collaboration with the support team has clarified that enabling the 'Set Group Filter' feature in FortiAuthenticator will not impact current token assignments or VPN user access. This setting adjustment is part of our strategy for synchronizing user accounts more efficiently and optimizing license usage.
We have now implemented a process where users requiring a token are added to a designated security group within LDAP. This approach focuses the synchronization on a specific subset of users, thereby conserving user licenses and avoiding the unnecessary syncing of all users.
I put in a support request.
Collaboration with the support team has clarified that enabling the 'Set Group Filter' feature in FortiAuthenticator will not impact current token assignments or VPN user access. This setting adjustment is part of our strategy for synchronizing user accounts more efficiently and optimizing license usage.
We have now implemented a process where users requiring a token are added to a designated security group within LDAP. This approach focuses the synchronization on a specific subset of users, thereby conserving user licenses and avoiding the unnecessary syncing of all users.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1712 | |
1093 | |
752 | |
447 | |
231 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.