Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Chris_Colantonio
New Contributor

ldap auth and nested OUs

Hello, I' m configuring ldap (active directory) authentication for VPN access. I have users in different OU' s, so I can' t set the location for " distinguished name" to be exactly where all the users are contained. If I set that attribute as the OU above , will it search/authenticate all OU' s within for the users, or do I need to specify the exact OU where users are sitting (forcing me to move all VPN users into one OU)? If it matters, I will be using group authentication as well. Thank you, Chris C.
___________________ FCNSA 3.0 2 FG-620b HA 2 FWF-60B FortiAnalyzer 2000a FortiMail 400
___________________ FCNSA 3.0 2 FG-620b HA 2 FWF-60B FortiAnalyzer 2000a FortiMail 400
1 REPLY 1
rlord
New Contributor

It’s been awhile but if I remember right you have to place the AD Forti user you created in the root OU. It will search all OU’s within from wherever that user is.
2 x 310B v4.0,build0272,100331 (MR2) HA ( Active Passive )
2 x 310B v4.0,build0272,100331 (MR2) HA ( Active Passive )
Labels
Top Kudoed Authors